EIP-2026-102807
PRE-CVEcPanel 5.0 - 'Openwebmail' Local Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102807. PoCs published by deadbeat.
AI-analyzed exploit summary This exploit leverages a local file include vulnerability in cPanel's openwebmail package by manipulating environment variables to execute arbitrary Perl scripts with root privileges via the setuid 'oom' script. It creates a malicious Perl script in /tmp and triggers its execution to spawn a rootshell.
Description
cPanel 5.0 - 'Openwebmail' Local Privilege Escalation
Exploits (1)
This exploit leverages a local file include vulnerability in cPanel's openwebmail package by manipulating environment variables to execute arbitrary Perl scripts with root privileges via the setuid 'oom' script. It creates a malicious Perl script in /tmp and triggers its execution to spawn a rootshell.