Close Menu
Tech Nova Mindset – Empower Innovation and Forward Thinking

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Parents Guide Kids to Top Engineering Skills In AI Age

    September 23, 2026

    Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw

    September 23, 2026

    The Download: India’s smart glasses menace and AI’s trillion-dollar gamble

    September 23, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Parents Guide Kids to Top Engineering Skills In AI Age
    • Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw
    • The Download: India’s smart glasses menace and AI’s trillion-dollar gamble
    • AT&T Is Automating Away Jobs—and Its Old Telecom Empire
    • Smart glasses are already causing havoc in India
    • Viture’s Vonder Glasses Are Meant to Map Your Mind
    • AI Models Built From Rat Brains Just Got Closer to Reality
    • Don’t be fooled by this summer of AI hype 
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    • Home
    • Gadgets
    • Reviews
    • Tech News
    • Future Tech
    • AI & Robotics
    • How-To Guides
    • More
      • Cybersecurity
      • Startups & Innovation
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    Home»Cybersecurity»CISA warns of another cPanel plugin flaw exploited in attacks
    Cybersecurity

    CISA warns of another cPanel plugin flaw exploited in attacks

    kirklandc008@gmail.comBy kirklandc008@gmail.comJune 16, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    cPanel
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. government agencies three days to secure their servers against an actively exploited vulnerability (CVE-2026-54420) in the LiteSpeed cPanel user-end plugin.

    Tracked as CVE-2026-48172, this high-severity vulnerability was reported by Namecheap and allows attackers with FTP or web shell access to escalate privileges to root on shared hosting servers running CloudLinux/CageFS.

    This vulnerability affects all user-end plugin versions before 2.4.8 and stems from a ‘UNIX symlink following’ weakness.

    LiteSpeed flagged it as actively exploited in early June and released urgent security updates, warning users to update the cPanel user-end plugin (bundled with the WHM plugin) to the latest version.

    Users are advised to use the following command to check if their server is vulnerable to attacks targeting the CVE-2026-48172 vulnerability:


    grep -rE ‘cpanel_jsonapi_func=(generateEcCert|packageUserSize)|cert_action_entry .*geneccert’ /usr/local/cpanel/logs/ /var/cpanel/logs/ 2>/dev/null

    “If this command results in any output, the vulnerability may have been exploited on your server. [..] To determine any damage done, examine the system logs for any actions taken by the detected IPs,” LiteSpeed said. “This vulnerability is being actively exploited, and poses a risk for all user-end plugin versions prior to 2.4.8.”

    On Monday, CISA also added that the vulnerability to its Known Exploited Vulnerabilities Catalog (KEV), ordering Federal Civilian Executive Branch (FCEB) agencies to secure their systems within three days, as required by Binding Operational Directive (BOD) 26-04.

    BOD 26-04 was issued last Wednesday (revoking the older BODs 19-02 and 22-01) and requires U.S. federal agencies to prioritize patching based on the risk of exploitation.

    Key factors to consider when assessing the risks include whether the security flaw is included in CISA’s KEV catalog, whether the asset is publicly exposed online, whether exploitation can be automated for large-scale attacks, and whether successful exploitation grants attackers partial or total control of the targeted system.

    “This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise,” the cybersecurity agency warned yesterday. “Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset’s internet exposure and ensuring adherence to BOD 26-04 patching guidelines.”

    Last month, CISA warned federal agencies to patch another LiteSpeed cPanel vulnerability (CVE-2026-48172), which unauthenticated attackers exploited to execute arbitrary scripts with root privileges.

    Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.

    The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.

    Get the whitepaper

    Attacks CISA cPanel exploited Flaw plugin warns
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    kirklandc008@gmail.com
    • Website

    Related Posts

    Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw

    September 23, 2026

    A fundamental flaw leaves LLMs strikingly vulnerable to attack

    July 31, 2026

    Ransomware in 2026: More groups, more victims, no slowdown

    July 26, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Nothing CEO says phone prices are going to keep going up

    June 12, 20267 Views

    The best VPN routers of 2026: Expert tested and reviewed

    June 14, 20263 Views

    Google DeepMind Plans to Track AGI Progress With These 10 Traits of General Intelligence

    March 21, 20263 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Recent Posts
    • Parents Guide Kids to Top Engineering Skills In AI Age
    • Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw
    • The Download: India’s smart glasses menace and AI’s trillion-dollar gamble
    • AT&T Is Automating Away Jobs—and Its Old Telecom Empire
    • Smart glasses are already causing havoc in India

    Parents Guide Kids to Top Engineering Skills In AI Age

    September 23, 2026

    Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw

    September 23, 2026

    The Download: India’s smart glasses menace and AI’s trillion-dollar gamble

    September 23, 2026

    AT&T Is Automating Away Jobs—and Its Old Telecom Empire

    September 23, 2026
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 TechNovaMindset. Designed by By Pro.

    Type above and press Enter to search. Press Esc to cancel.