usmannasir / cyberpanel

Cyber Panel - The hosting control panel for OpenLiteSpeed
GNU General Public License v3.0
1.59k stars 610 forks source link

[BUG] Critial Security Bug - Compromising CyberPanel Server #981

Closed n0n4me403 closed 2 years ago

n0n4me403 commented 2 years ago

Hello,

I have found a critial security vulnerability in CyberPanel that allows attackers easily compromise the server. I have sent an email containing detail of how to exploit this vulnerablity to usman@cyberpersons.com and not receive reply after 9 days.

Who can I contact to submit the detail of vulnerabilty again then patch it ?

qtwrk commented 2 years ago

you can try send mail to support@litespeedtech.com , LiteSpeed has some internal channel with Usman

n0n4me403 commented 2 years ago

Already sent, thanks.

usmannasir commented 2 years ago

In the latest version if you go down you can see this feature is commented out and not available.