PT-2025-50728 · Cpanel · Cpanel

Published

2025-11-05

·

Updated

2025-12-14

·

CVE-2025-66429

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions cPanel versions 110 through 132
Description A directory traversal issue exists within the Team Manager API. This allows for the overwriting of arbitrary files, potentially leading to privilege escalation to the root user.
Recommendations Update to a version beyond 132.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

BDU:2026-00905
CVE-2025-66429

Affected Products

Cpanel