Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical cPanel Flaw Allows SQL Execution as Root

Critical cPanel Flaw Allows SQL Execution as Root

Posted on August 4, 2026 By CWS

cPanel, a widely used web hosting control panel, has addressed a critical vulnerability that could allow authenticated users to execute SQL commands with root-level privileges. This flaw, identified as CVE-2026-58048, threatens the security boundary between a cPanel account and the server’s administrative database identity. The vulnerability was resolved in a targeted security update that also fixed two additional issues.

Details of the SQL Vulnerability

The vulnerability affects all supported versions of cPanel & WHM, as well as WP Squared. It requires access to a valid cPanel account and the MySQL/MariaDB feature. Once exploited, it could enable users to run arbitrary database commands with administrative privileges, potentially compromising the operating system depending on its configuration.

cPanel has released patches for CVE-2026-58048 in the following versions: 11.110.0.137, 11.118.0.71, 11.126.0.78, 11.134.0.48, 11.136.0.32, and 138.1.6 for WP Squared. Administrators unable to update immediately can temporarily revoke MySQL access from users to mitigate risk.

Additional Vulnerabilities Addressed

Alongside the SQL vulnerability, cPanel addressed CVE-2026-58047, a moderate HTTP request-smuggling flaw in the cpsrvd daemon. This flaw could allow remote attackers to manipulate responses to other users on the same server. A workaround involves disabling backend connection reuse, which may increase latency and CPU usage on busy servers.

Another advisory covers GCVE-25-2026-07-45-3 in Exim, where a local user’s .forward file can trigger unsafe string expansion under certain configurations. Exim 4.99.5 addresses this issue by removing the vulnerable expansion.

Implications and Recommendations

The US Cybersecurity and Infrastructure Security Agency (CISA) has rated the technical impact of the SQL vulnerability as total, although it noted no exploitation had occurred at the time of reporting. This emphasizes the importance of maintaining updated systems to protect against potential threats.

Administrators are urged to verify their server configurations and apply the necessary patches. For systems unable to update immediately, implementing temporary security measures is crucial to safeguard sensitive data and prevent unauthorized access.

cPanel’s advisories highlight the need for vigilance and prompt action in maintaining server security. By addressing these vulnerabilities, cPanel aims to fortify the security of its platform and protect its users from potential exploits.

The Hacker News Tags:CISA, cPanel, CVE-2026-58048, Cybersecurity, database management, database security, Exim, hosting customers, HTTP request smuggling, privilege escalation, security patch, server security, SQL vulnerability, tech news, vulnerability patch

Post navigation

Previous Post: Exploiting AI Agents: New Threat to Software Supply Chains
Next Post: TP-Link Omada ZTP Flaws Pose Network Security Risk

Related Posts

Cybercriminals Deploy CORNFLAKE.V3 Backdoor via ClickFix Tactic and Fake CAPTCHA Pages Cybercriminals Deploy CORNFLAKE.V3 Backdoor via ClickFix Tactic and Fake CAPTCHA Pages The Hacker News
DOJ Charges 22-Year-Old for Running RapperBot Botnet Behind 370,000 DDoS Attacks DOJ Charges 22-Year-Old for Running RapperBot Botnet Behind 370,000 DDoS Attacks The Hacker News
Tropic Trooper Utilizes Trojanized Software for Cyber Attacks Tropic Trooper Utilizes Trojanized Software for Cyber Attacks The Hacker News
China-Linked UAT-8302 Targets Global Governments with APT Malware China-Linked UAT-8302 Targets Global Governments with APT Malware The Hacker News
Russian Group Linked to Malware Attacks on Ukraine Russian Group Linked to Malware Attacks on Ukraine The Hacker News
Patchwork Targets Turkish Defense Firms with Spear-Phishing Using Malicious LNK Files Patchwork Targets Turkish Defense Firms with Spear-Phishing Using Malicious LNK Files The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Russian Hacker Targets Global Firms and Ukrainian Sites
  • TP-Link Omada ZTP Flaws Pose Network Security Risk
  • Critical cPanel Flaw Allows SQL Execution as Root
  • Exploiting AI Agents: New Threat to Software Supply Chains
  • Gemini Attack Method Exposes Secrets, Risks PR Manipulation

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Russian Hacker Targets Global Firms and Ukrainian Sites
  • TP-Link Omada ZTP Flaws Pose Network Security Risk
  • Critical cPanel Flaw Allows SQL Execution as Root
  • Exploiting AI Agents: New Threat to Software Supply Chains
  • Gemini Attack Method Exposes Secrets, Risks PR Manipulation

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark