Skip to content
COOEY

FAIL › dossier

CyberPersons

VENDOR

· dossier confidence 0%

PROFILE
CategoryvendorWhat they doCyberPersons is a cybersecurity vendor providing incident response, forensics, and security awareness training services.
SECURITY POSTURE

Critical vulnerabilities in CyberPanel product allow unauthenticated RCE and authentication bypass.

Notable failures
  • CVE-2024-51567: Unauthenticated RCE via incorrect default permissions
  • CVE-2024-51378: Authentication bypass and RCE via shell metacharacters in statusfile
  • Active exploitation leading to ransomware incidents
Patterns: Repeated critical RCE vulnerabilities in CyberPanel product; Default configuration misconfigurations enabling remote code execution; Authentication bypass via shell metacharacters
FAILURE HISTORY · 2
DATEEVENTSEVSUMMARY
2024-11-07 CVE-2024-51567 critical CyberPanel's incorrect default permissions allowed unauthenticated remote attackers to execute commands as root, leading to active exploitation and ransomware incidents.
2024-12-04 CVE-2024-51378 critical CyberPanel's incorrect default permissions allow authentication bypass and arbitrary command execution via shell metacharacters in the statusfile property.
DOSSIER SOURCES
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-07-31 04:01:08.163160+00:00