National Cyber Warfare Foundation (NCWF)

LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as Root


0 user ratings
2026-05-23 08:04:08
milo
Blue Team (CND)
A maximum-severity security vulnerability impacting LiteSpeed User-End cPanel Plugin has come under active exploitation in the wild.

The flaw, tracked as CVE-2026-48172 (CVSS score: 10.0), relates to an instance of incorrect privilege assignment that an attacker could abuse to run arbitrary scripts with elevated permissions.

"Any cPanel user (including an attacker or a compromised account) may



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/05/litespeed-cpanel-plugin-cve-2026-48172.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.