Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical cPanel Flaw Allows SQL Execution as Root

Critical cPanel Flaw Allows SQL Execution as Root

Posted on August 4, 2026 By CWS

cPanel, a widely used web hosting control panel, has addressed a critical vulnerability that could allow authenticated users to execute SQL commands with root-level privileges. This flaw, identified as CVE-2026-58048, threatens the security boundary between a cPanel account and the server’s administrative database identity. The vulnerability was resolved in a targeted security update that also fixed two additional issues.

Details of the SQL Vulnerability

The vulnerability affects all supported versions of cPanel & WHM, as well as WP Squared. It requires access to a valid cPanel account and the MySQL/MariaDB feature. Once exploited, it could enable users to run arbitrary database commands with administrative privileges, potentially compromising the operating system depending on its configuration.

cPanel has released patches for CVE-2026-58048 in the following versions: 11.110.0.137, 11.118.0.71, 11.126.0.78, 11.134.0.48, 11.136.0.32, and 138.1.6 for WP Squared. Administrators unable to update immediately can temporarily revoke MySQL access from users to mitigate risk.

Additional Vulnerabilities Addressed

Alongside the SQL vulnerability, cPanel addressed CVE-2026-58047, a moderate HTTP request-smuggling flaw in the cpsrvd daemon. This flaw could allow remote attackers to manipulate responses to other users on the same server. A workaround involves disabling backend connection reuse, which may increase latency and CPU usage on busy servers.

Another advisory covers GCVE-25-2026-07-45-3 in Exim, where a local user’s .forward file can trigger unsafe string expansion under certain configurations. Exim 4.99.5 addresses this issue by removing the vulnerable expansion.

Implications and Recommendations

The US Cybersecurity and Infrastructure Security Agency (CISA) has rated the technical impact of the SQL vulnerability as total, although it noted no exploitation had occurred at the time of reporting. This emphasizes the importance of maintaining updated systems to protect against potential threats.

Administrators are urged to verify their server configurations and apply the necessary patches. For systems unable to update immediately, implementing temporary security measures is crucial to safeguard sensitive data and prevent unauthorized access.

cPanel’s advisories highlight the need for vigilance and prompt action in maintaining server security. By addressing these vulnerabilities, cPanel aims to fortify the security of its platform and protect its users from potential exploits.

The Hacker News Tags:CISA, cPanel, CVE-2026-58048, Cybersecurity, database management, database security, Exim, hosting customers, HTTP request smuggling, privilege escalation, security patch, server security, SQL vulnerability, tech news, vulnerability patch

Post navigation

Previous Post: Exploiting AI Agents: New Threat to Software Supply Chains
Next Post: TP-Link Omada ZTP Flaws Pose Network Security Risk

Related Posts

Meta to Train AI on E.U. User Data From May 27 Without Consent; Noyb Threatens Lawsuit Meta to Train AI on E.U. User Data From May 27 Without Consent; Noyb Threatens Lawsuit The Hacker News
Four Threat Clusters Using CastleLoader as GrayBravo Expands Its Malware Service Infrastructure Four Threat Clusters Using CastleLoader as GrayBravo Expands Its Malware Service Infrastructure The Hacker News
Critical PAN-OS Flaw Exploited for Root Access Critical PAN-OS Flaw Exploited for Root Access The Hacker News
LOTUSLITE Backdoor Targets U.S. Policy Entities Using Venezuela-Themed Spear Phishing LOTUSLITE Backdoor Targets U.S. Policy Entities Using Venezuela-Themed Spear Phishing The Hacker News
Picklescan Bugs Allow Malicious PyTorch Models to Evade Scans and Execute Code Picklescan Bugs Allow Malicious PyTorch Models to Evade Scans and Execute Code The Hacker News
How To Automate Ticket Creation, Device Identification and Threat Triage With Tines How To Automate Ticket Creation, Device Identification and Threat Triage With Tines The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Revival of Bugtraq: Original Cybersecurity Forum Returns
  • CSS Vulnerabilities Threaten Webmail Security
  • Atlassian Rovo Vulnerable to Data Exfiltration Risks
  • Critical Metabase Flaw Exploited, Urgent Patch Released
  • OpenAI Delays Astra AI Model to Address Cybersecurity Risks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Revival of Bugtraq: Original Cybersecurity Forum Returns
  • CSS Vulnerabilities Threaten Webmail Security
  • Atlassian Rovo Vulnerable to Data Exfiltration Risks
  • Critical Metabase Flaw Exploited, Urgent Patch Released
  • OpenAI Delays Astra AI Model to Address Cybersecurity Risks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark