cPanel의 보안 결함이 사용자에게 데이터베이스 루트 권한으로 SQL을 실행할 수 있는 기회를 제공했다.
cPanel은 인증된 호스팅 고객이 데이터베이스 루트 컨텍스트에서 SQL을 실행할 수 있게 해주는 결함을 패치했다. 이 결함은 cPanel 계정과 서버의 관리 데이터베이스 식별자 간의 권한 경계를 넘는 문제를 발생시켰다. 이 데이터베이스 버그는 CVE-2026-58048로 추적되며, CVSS 점수는 9.4로 평가된다.
A cPanel vulnerability allowed users to execute SQL as database root.
cPanel has patched a critical security flaw that allowed authenticated hosting customers to execute SQL in the database's root context, crossing privilege boundaries. This bug is tracked as CVE-2026-58048 with a CVSS score of 9.4, indicating its seriousness. The patch also addresses two other issues that could bypass account boundaries.