Cpanel all version >> root access with a reseller account.
SecurityAlert : 3910 CVE : CVE-2008-2478 CWE : CWE-94 SecurityRisk : High (About) Remote Exploit : Yes Local Exploit : No Victim interaction required : No Exploit Given : No Credit : a jasbi yahoo com Published : 29.05.2008
Affected Software :
CPanel, CPanel, 11.23.1_current, and previous
CPanel, CPanel, 11.8.6_stable, and previous
Advisory Text :
By : Ali Jasbi ( IHST security & hacking Research team) WwW.Hackerz.ir
Vendor : Cpanel.net
Version : ALL !!
Risk : Very high
What u can do with this bug is :
u can have a access to all the server with reseller privilege (Th3 r00t)
how it's work ?
when u want to create an account in shell what will happen ?
it means you got a access to wwwacct in the scripts folder (Th3 r00t)
so u can run other command with root access like that
./scripts/wwwactt domain.com domain password ali (at) hackerz (dot) ir
[email concealed];./home/hackerz/public_html/do.pl ( your command now is
./home/hackerz/public_html/do.pl)
that u can Likewise run it on the web base program.what u need to do is
just write ali (at) hackerz (dot) ir [email
concealed];./home/hackerz/public_html/do.pl in Email text box when u want
to create an account.
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.
Maksymilian Arciemowicz discovered a Integer Overflow
vulnerability in the libc library "strfmon()" function.A vulnerability could allow an attacker who successfully exploits this vulnerability to take control of the affected *BSD systems.