PatchSiren

CyberPersons CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

Known exploited CyberPersons CVE published 2024-12-04

CVE-2024-51378

CVE-2024-51378 is an incorrect default permissions issue affecting CyberPersons CyberPanel. CISA has added it to the Known Exploited Vulnerabilities catalog, with known ransomware campaign use recorded in the source data. Prioritize remediation using vendor guidance or stop using the product if mitigations are not available.

Known exploited CyberPersons CVE published 2024-11-07

CVE-2024-51567

CVE-2024-51567 is a CyberPanel incorrect default permissions issue in CyberPersons’ product that CISA added to the Known Exploited Vulnerabilities catalog on 2024-11-07. Because CISA marks it as known exploited and indicates known ransomware campaign use, affected operators should treat it as an urgent remediation item.