Перейти к содержимому
Noroxi

Записи control-webpanel

85 опубликованных записей вендора control-webpanel.

Профиль для исследователя

Попали в KEV
2 · 2,4 %
С эксплойтом
2 · 2,4 %
Pre-auth RCE
32
С записью об исправлении
0 %
Медиана: публикация → KEV
29 дн.

Все записи

85 записей
  • CVE-2022-44877
    99Срочно

    login/index.php in CWP (aka Control Web Panel or CentOS Web Panel) 7 before 0.9.8.1147 allows remote attackers to execute arbitrary OS comma

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    control-webpanel · webpanel5 янв. 2023 г.

  • CVE-2025-48703
    96Срочно

    CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1205 allows unauthenticated remote code execution via shell metacharacters in t

    КритическаяCVSS 9,0KEVГотовый эксплойтEPSS 100 %

    control-webpanel · webpanel19 сент. 2025 г.

  • CVE-2021-45467
    60На этой неделе

    In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, an unauthenticated attacker can use %00 bytes to cause /user/loader.ph

    КритическаяCVSS 9,8Proof of conceptEPSS 71 %

    control-webpanel · webpanel26 дек. 2022 г.

  • CVE-2022-25046
    56В плане

    A path traversal vulnerability in loader.php of CWP v0.9.8.1122 allows attackers to execute arbitrary code via a crafted POST request.

    КритическаяCVSS 9,8Эксплойта нетEPSS 57 %

    control-webpanel · webpanel7 июл. 2022 г.

  • CVE-2021-45466
    56В плане

    In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=add_server&DHCP= to a

    КритическаяCVSS 9,8Эксплойта нетEPSS 55 %

    control-webpanel · webpanel26 дек. 2022 г.

  • CVE-2018-18323
    51В плане

    CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has Local File Inclusion via directory traversal with an admin/index.php?module=fil

    ВысокаяCVSS 7,5Proof of conceptEPSS 71 %

    control-webpanel · webpanel15 окт. 2018 г.

  • CVE-2021-31324
    49В плане

    The unprivileged user portal part of CentOS Web Panel is affected by a Command Injection vulnerability leading to root Remote Code Execution

    КритическаяCVSS 9,8Proof of conceptEPSS 35 %

    control-webpanel · webpanel18 мая 2021 г.

  • CVE-2019-13360
    46В плане

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, remote attackers can bypass authentication in the login process by leveraging k

    КритическаяCVSS 9,8Proof of conceptEPSS 24 %

    control-webpanel · webpanel16 июл. 2019 г.

  • CVE-2020-10230
    44В плане

    CentOS-WebPanel.com (aka CWP) CentOS Web Panel (for CentOS 6 and 7) allows SQL Injection via the /cwp_{SESSION_HASH}/admin/loader_ajax.php t

    КритическаяCVSS 9,8Proof of conceptEPSS 16 %

    control-webpanel · webpanel16 мар. 2020 г.

  • CVE-2018-18322
    44В плане

    CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has Command Injection via shell metacharacters in the admin/index.php service_start

    КритическаяCVSS 9,8Proof of conceptEPSS 15 %

    control-webpanel · webpanel15 окт. 2018 г.

  • CVE-2021-31316
    43В плане

    The unprivileged user portal part of CentOS Web Panel is affected by a SQL Injection via the 'idsession' HTTP POST parameter.

    КритическаяCVSS 9,8Proof of conceptEPSS 13 %

    control-webpanel · webpanel18 мая 2021 г.

  • CVE-2020-15429
    42В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15435
    42В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15612
    42В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15434
    42В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15422
    42В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15623
    42В плане

    This vulnerability allows remote attackers to write arbitrary files on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2022-25048
    41В плане

    Command injection vulnerability in CWP v0.9.8.1126 that allows normal users to run commands as the root user.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 20 %

    control-webpanel · webpanel7 июл. 2022 г.

  • CVE-2020-15611
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15420
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-el7-0.9.8.891.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15425
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15428
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15430
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15431
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.

  • CVE-2020-15426
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    control-webpanel · webpanel28 июл. 2020 г.