Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical cPanel Flaw Allows SQL Execution as Root

Critical cPanel Flaw Allows SQL Execution as Root

Posted on August 4, 2026 By CWS

cPanel, a widely used web hosting control panel, has addressed a critical vulnerability that could allow authenticated users to execute SQL commands with root-level privileges. This flaw, identified as CVE-2026-58048, threatens the security boundary between a cPanel account and the server’s administrative database identity. The vulnerability was resolved in a targeted security update that also fixed two additional issues.

Details of the SQL Vulnerability

The vulnerability affects all supported versions of cPanel & WHM, as well as WP Squared. It requires access to a valid cPanel account and the MySQL/MariaDB feature. Once exploited, it could enable users to run arbitrary database commands with administrative privileges, potentially compromising the operating system depending on its configuration.

cPanel has released patches for CVE-2026-58048 in the following versions: 11.110.0.137, 11.118.0.71, 11.126.0.78, 11.134.0.48, 11.136.0.32, and 138.1.6 for WP Squared. Administrators unable to update immediately can temporarily revoke MySQL access from users to mitigate risk.

Additional Vulnerabilities Addressed

Alongside the SQL vulnerability, cPanel addressed CVE-2026-58047, a moderate HTTP request-smuggling flaw in the cpsrvd daemon. This flaw could allow remote attackers to manipulate responses to other users on the same server. A workaround involves disabling backend connection reuse, which may increase latency and CPU usage on busy servers.

Another advisory covers GCVE-25-2026-07-45-3 in Exim, where a local user’s .forward file can trigger unsafe string expansion under certain configurations. Exim 4.99.5 addresses this issue by removing the vulnerable expansion.

Implications and Recommendations

The US Cybersecurity and Infrastructure Security Agency (CISA) has rated the technical impact of the SQL vulnerability as total, although it noted no exploitation had occurred at the time of reporting. This emphasizes the importance of maintaining updated systems to protect against potential threats.

Administrators are urged to verify their server configurations and apply the necessary patches. For systems unable to update immediately, implementing temporary security measures is crucial to safeguard sensitive data and prevent unauthorized access.

cPanel’s advisories highlight the need for vigilance and prompt action in maintaining server security. By addressing these vulnerabilities, cPanel aims to fortify the security of its platform and protect its users from potential exploits.

The Hacker News Tags:CISA, cPanel, CVE-2026-58048, Cybersecurity, database management, database security, Exim, hosting customers, HTTP request smuggling, privilege escalation, security patch, server security, SQL vulnerability, tech news, vulnerability patch

Post navigation

Previous Post: Exploiting AI Agents: New Threat to Software Supply Chains
Next Post: TP-Link Omada ZTP Flaws Pose Network Security Risk

Related Posts

India Orders Phone Makers to Pre-Install Sanchar Saathi App to Tackle Telecom Fraud India Orders Phone Makers to Pre-Install Sanchar Saathi App to Tackle Telecom Fraud The Hacker News
New Linux Malware Showboat Targets Middle East Telecom New Linux Malware Showboat Targets Middle East Telecom The Hacker News
North Korea-Linked npm Packages Pose Threat to Developers North Korea-Linked npm Packages Pose Threat to Developers The Hacker News
How to Streamline Zero Trust Using the Shared Signals Framework How to Streamline Zero Trust Using the Shared Signals Framework The Hacker News
Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign The Hacker News
Cybersecurity Focus Risks Overlooking Basics Cybersecurity Focus Risks Overlooking Basics The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Keyv npm Package Breach in Major Supply Chain Attack
  • Obsidian Security Secures $85M, Hits $1.1B Valuation
  • AI Revolutionizes Cybersecurity: The Rise of Vibe Hacking
  • Russian Hacker Targets Global Firms and Ukrainian Sites
  • TP-Link Omada ZTP Flaws Pose Network Security Risk

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Keyv npm Package Breach in Major Supply Chain Attack
  • Obsidian Security Secures $85M, Hits $1.1B Valuation
  • AI Revolutionizes Cybersecurity: The Rise of Vibe Hacking
  • Russian Hacker Targets Global Firms and Ukrainian Sites
  • TP-Link Omada ZTP Flaws Pose Network Security Risk

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark