CVE-2026-58048

Summary

Improper preservation of SQL mode when renaming databases in cPanel allows execution of SQL in root context.

Affected Software

VendorProductVersion RangeStatus
WebProscPanel0 < 11.110.0.137affected
WebProscPanel0 < 11.126.0.78affected
WebProscPanel0 < 11.134.0.48affected
WebProscPanel0 < 11.136.0.32affected
WebProscPanel0 < 11.137.9999.99affected
WebProscPanel0 < 11.118.0.71affected
WebProsWP Squared0 < 11.138.1.6affected

Weaknesses

  • CWE-89: CWE-89 SQL Injection

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References