CVE-2025-66429
EUVD-2025-20287611.12.2025, 21:15
An issue was discovered in cPanel 110 through 132. A directory traversal vulnerability within the Team Manager API allows for overwrite of an arbitrary file. This can allow for privilege escalation to the root user.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cpanel | cpanel | 110.0.0 ≤ 𝑥 < 126.0.37 |
| cpanel | cpanel | 128.0.1 ≤ 𝑥 < 130.0.16 |
| cpanel | cpanel | 132.0.0 ≤ 𝑥 < 132.0.4 |
𝑥
= Vulnerable software versions