Back to Threat Feed
New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root
Port & Service
Published on August 4, 2026 at 12:00 PM

New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root

A critical security flaw in cPanel & WHM allows authenticated hosting accounts to escalate privileges and execute SQL commands as database root, exposing multi-tenant web servers.

Source: The Hacker News

How Mangudai Discovers This Issue

Mangudai scans for exposed cPanel administrative interfaces (ports 2082/2083, 2086/2087) and flags vulnerable server software versions exposed to the public internet.

Continuous Autonomous AuditsMangudai scans target perimeters multiple times daily to catch configuration drift instantly.
Zero-Agent ArchitectureIdentifies exposure angles without requiring local installations or server access.
Launch Scan For My Domain