An issue was discovered in cPanel 110 through 132. A directory traversal vulnerability within the Team Manager API allows for overwrite of an arbitrary file. This can allow for privilege escalation to the root user.
| Software | From | Fixed in |
|---|---|---|
| cpanel / cpanel | 110.0.0 | 126.0.37 |
| cpanel / cpanel | 128.0.1 | 130.0.16 |
| cpanel / cpanel | 132.0.0 | 132.0.4 |