CVE-2024-51378 is an incorrect default permissions issue affecting CyberPersons CyberPanel. CISA has added it to the Known Exploited Vulnerabilities catalog, with known ransomware campaign use recorded in the source data. Prioritize remediation using vendor guidance or stop using the product if mitigations are not available.
Known exploitedCyberPersonsCVE published 2024-11-07
CVE-2024-51567 is a CyberPanel incorrect default permissions issue in CyberPersons’ product that CISA added to the Known Exploited Vulnerabilities catalog on 2024-11-07. Because CISA marks it as known exploited and indicates known ransomware campaign use, affected operators should treat it as an urgent remediation item.