ZPanel
cpe:2.3:a:zpanelcp:zpanel:*:*:*:*:*:*:*, +1 more
- 10.1.1
This vulnerability is being actively exploited in the wild.
A local privilege escalation vulnerability exists in ZPanel due to a helper binary called zsudo, which is intended for restricted privilege escalation for administrative tasks. When zsudo is misconfigured in the sudoers file, low-privileged users can exploit it to execute arbitrary commands as root. This vulnerability allows local attackers with shell access to escalate privileges by writing a payload to a directory they can write to and executing it using zsudo. The issue is particularly significant in post-exploitation scenarios after a web server compromise, where the attacker gains access to zsudo.
Exploitation of this vulnerability allows for unauthorized privilege escalation, enabling a user to execute commands with root privileges.
To reproduce this vulnerability, a user must have shell access and be in a ZPanel environment where zsudo is included in the sudoers file. Once these conditions are met, the user can write a payload to a writable directory and execute it using zsudo, thereby escalating privileges to root.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.