Gee Jam

1 posts

Gee Jam

Gee Jam

@JamGee39212

Katılım Kasım 2025
8 Takip Edilen0 Takipçiler
Gee Jam
Gee Jam@JamGee39212·
@ITSecurityguard 11.124.0.40 and higher 11.126.0.61 and higher 11.130.0.25 and higher 11.132.0.34 and higher 11.134.0.28 and higher 11.136.0.12 and higher these are affected or patched versions
English
1
0
0
49
Patrik Grobshäuser
Patrik Grobshäuser@ITSecurityguard·
We had a look at cPanel recently and found an attack chain that allowed us to read files as root pre-auth on cPanel version👇 11.124.0.40 and higher 11.126.0.61 and higher 11.130.0.25 and higher 11.132.0.34 and higher 11.134.0.28 and higher 11.136.0.12 and higher Patch now!
Assetnote@assetnote

Our security research team discovered a pre-authentication arbitrary file read as root in cPanel (CVE-2026-29205) — a path traversal in cpdavd that we made exploitable by abusing Dovecot's + alias handling to create attacker-controlled directory names on disk. We've updated cpanel2shell-scanner to cover both issues. Writeup and tool in replies. 👇

English
1
4
42
9.5K