Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical cPanel Flaw Allows SQL Execution as Root

Critical cPanel Flaw Allows SQL Execution as Root

Posted on August 4, 2026 By CWS

cPanel, a widely used web hosting control panel, has addressed a critical vulnerability that could allow authenticated users to execute SQL commands with root-level privileges. This flaw, identified as CVE-2026-58048, threatens the security boundary between a cPanel account and the server’s administrative database identity. The vulnerability was resolved in a targeted security update that also fixed two additional issues.

Details of the SQL Vulnerability

The vulnerability affects all supported versions of cPanel & WHM, as well as WP Squared. It requires access to a valid cPanel account and the MySQL/MariaDB feature. Once exploited, it could enable users to run arbitrary database commands with administrative privileges, potentially compromising the operating system depending on its configuration.

cPanel has released patches for CVE-2026-58048 in the following versions: 11.110.0.137, 11.118.0.71, 11.126.0.78, 11.134.0.48, 11.136.0.32, and 138.1.6 for WP Squared. Administrators unable to update immediately can temporarily revoke MySQL access from users to mitigate risk.

Additional Vulnerabilities Addressed

Alongside the SQL vulnerability, cPanel addressed CVE-2026-58047, a moderate HTTP request-smuggling flaw in the cpsrvd daemon. This flaw could allow remote attackers to manipulate responses to other users on the same server. A workaround involves disabling backend connection reuse, which may increase latency and CPU usage on busy servers.

Another advisory covers GCVE-25-2026-07-45-3 in Exim, where a local user’s .forward file can trigger unsafe string expansion under certain configurations. Exim 4.99.5 addresses this issue by removing the vulnerable expansion.

Implications and Recommendations

The US Cybersecurity and Infrastructure Security Agency (CISA) has rated the technical impact of the SQL vulnerability as total, although it noted no exploitation had occurred at the time of reporting. This emphasizes the importance of maintaining updated systems to protect against potential threats.

Administrators are urged to verify their server configurations and apply the necessary patches. For systems unable to update immediately, implementing temporary security measures is crucial to safeguard sensitive data and prevent unauthorized access.

cPanel’s advisories highlight the need for vigilance and prompt action in maintaining server security. By addressing these vulnerabilities, cPanel aims to fortify the security of its platform and protect its users from potential exploits.

The Hacker News Tags:CISA, cPanel, CVE-2026-58048, Cybersecurity, database management, database security, Exim, hosting customers, HTTP request smuggling, privilege escalation, security patch, server security, SQL vulnerability, tech news, vulnerability patch

Post navigation

Previous Post: Exploiting AI Agents: New Threat to Software Supply Chains
Next Post: TP-Link Omada ZTP Flaws Pose Network Security Risk

Related Posts

Apple Tests Encrypted RCS Messaging in iOS Beta Apple Tests Encrypted RCS Messaging in iOS Beta The Hacker News
NuGet Package Compromises Sicoob Credentials NuGet Package Compromises Sicoob Credentials The Hacker News
Malware Exploits Windows Hello Keys for Entra ID Access Malware Exploits Windows Hello Keys for Entra ID Access The Hacker News
SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and More SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and More The Hacker News
China-Linked Group Unleashes StormEncryptor Ransomware China-Linked Group Unleashes StormEncryptor Ransomware The Hacker News
Google Sues 25 Chinese Entities Over BADBOX 2.0 Botnet Affecting 10M Android Devices Google Sues 25 Chinese Entities Over BADBOX 2.0 Botnet Affecting 10M Android Devices The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Microsoft Patches Severe Azure AI Foundry Vulnerability
  • Brevo Security Breach Impacts Over 100,000 Websites
  • Transparent Tribe Unveils New Rust Backdoor Strategy
  • Top Container Registry Security Tools in 2026
  • Ransomware Developer Sentenced Amid Cybersecurity Alerts

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Microsoft Patches Severe Azure AI Foundry Vulnerability
  • Brevo Security Breach Impacts Over 100,000 Websites
  • Transparent Tribe Unveils New Rust Backdoor Strategy
  • Top Container Registry Security Tools in 2026
  • Ransomware Developer Sentenced Amid Cybersecurity Alerts

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark