CVE-2018-18772
20.11.2018, 19:29
CentOS-WebPanel.com (aka CWP) CentOS Web Panel through 0.9.8.740 allows CSRF via admin/index.php?module=send_ssh, as demonstrated by executing an arbitrary OS command.
Vendor | Product | Version |
---|---|---|
control-webpanel | webpanel | 𝑥 ≤ 0.9.8.740 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References