PROFILE
CategoryvendorWhat they doCyberPersons is a cybersecurity vendor providing incident response, forensics, and security awareness training services.
SECURITY POSTURE
Critical vulnerabilities in CyberPanel product allow unauthenticated RCE and authentication bypass.
Notable failures
- CVE-2024-51567: Unauthenticated RCE via incorrect default permissions
- CVE-2024-51378: Authentication bypass and RCE via shell metacharacters in statusfile
- Active exploitation leading to ransomware incidents
Patterns: Repeated critical RCE vulnerabilities in CyberPanel product; Default configuration misconfigurations enabling remote code execution; Authentication bypass via shell metacharacters
FAILURE HISTORY · 2
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2024-11-07 | CVE-2024-51567 | critical | CyberPanel's incorrect default permissions allowed unauthenticated remote attackers to execute commands as root, leading to active exploitation and ransomware incidents. |
| 2024-12-04 | CVE-2024-51378 | critical | CyberPanel's incorrect default permissions allow authentication bypass and arbitrary command execution via shell metacharacters in the statusfile property. |
DOSSIER SOURCES
- Solstice Advanced Materials (SOLS) Company Profile & Description · stockanalysis.com
- Company Database Search · www.edgarcompany.sec.gov
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-07-31 04:01:08.163160+00:00