SECURITY·중요도 9·2026. 09. 15.·The Hacker News

LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server

── KO ──────────────────

LiteSpeed 웹 서버의 취약점으로 한 사용자가 루트 권한을 얻을 수 있다.

LiteSpeed Web Server Enterprise의 치명적인 취약점이 발견되어, 저조한 권한을 가진 사용자가 공유 호스팅 서버에서 루트 접근 권한을 얻을 수 있다. cPanel은 9월 14일 이와 관련한 경고를 발표했다. 공유 서버에서는 여러 고객의 웹사이트가 한 대의 머신에서 운영되므로, 공격자는 자신의 호스팅 계정을 이용해 다른 사이트와 서버에 접근하거나 수정할 수 있다.


── EN ──────────────────

A vulnerability in LiteSpeed Web Server allows one user to gain root access on a shared server.

A critical vulnerability in LiteSpeed Web Server Enterprise has been identified, allowing a low-privilege user to gain root access on a shared hosting server. cPanel issued an advisory about this on September 14. On shared servers, multiple customer sites run on a single machine, meaning an attacker could exploit this flaw to access or modify other sites and the server itself.

원문 보기 →목록으로