Control-Webpanel Webpanel vulnerabilities
82 known vulnerabilities affecting control-webpanel/webpanel.
Total CVEs
82
CISA KEV
2
actively exploited
Public exploits
15
Exploited in wild
3
Severity breakdown
CRITICAL34HIGH23MEDIUM25
Vulnerabilities
Page 5 of 5
CVE-2019-14725P4MEDIUMCVSS 4.3v0.9.8.8512019-09-11
CVE-2019-14725 [MEDIUM] CWE-639 CVE-2019-14725: In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to change the e-mail usage value of a victim account via an attacker account.
nvd
CVE-2019-16295P4MEDIUMCVSS 4.6v0.9.8.8552019-10-31
CVE-2019-16295 [MEDIUM] CWE-79 CVE-2019-16295: Stored XSS in filemanager2.php in CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.885 exists vi
Stored XSS in filemanager2.php in CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.885 exists via the cmd_arg parameter. This can be exploited by a local attacker who supplies a crafted filename within a directory visited by the victim.
nvd
← Previous5 / 5