TITLE:
cPanel Login Command Injection Vulnerability
SECUNIA ADVISORY ID:
SA11124
VERIFY ADVISORY:
http://secunia.com/advisories/11124/
CRITICAL:
Highly critical
IMPACT:
System access
WHERE:
From remote
SOFTWARE:
cPanel 9.x
DESCRIPTION:
Arab VieruZ has reported a vulnerability in cPanel, allowing
malicious people to execute certain system commands on a vulnerable
system.
The problem is that user input passed to the "user" parameter in the
"login" section isn't properly verified before being used. This can
be exploited to inject various commands by supplying shell meta
characters.
Example:
http://[victim]:2082/login/?user=|"`id`"|
The vulnerability has been reported in version 9.1.0. Other versions
may also be affected.
SOLUTION:
Filter malicious characters and character sequences in a proxy or
firewall with URL filtering capabilities.
PROVIDED AND/OR DISCOVERED BY:
Arab VieruZ



LinkBack URL
About LinkBacks
Reply With Quote
I wasn't aware that me posting the version of cpanel I'm using was spreading an exploit
Although with all the recent holes, maybe mentioning you use cPanel is putting your servers at risk






