CVE-2023-25132
24.04.2023, 10:15
Unrestricted upload of file with dangerous type vulnerability in default.cmd file in PowerPanel Business Local/Remote for Windows v4.8.6 and earlier, PowerPanel Business Management for Windows v4.8.6 and earlier, PowerPanel Business Local/Remote for Linux 32bit v4.8.6 and earlier, PowerPanel Business Local/Remote for Linux 64bit v4.8.6 and earlier, PowerPanel Business Management for Linux 32bit v4.8.6 and earlier, PowerPanel Business Management for Linux 64bit v4.8.6 and earlier, PowerPanel Business Local/Remote for MacOS v4.8.6 and earlier, and PowerPanel Business Management for MacOS v4.8.6 and earlier allows remote attackers to execute operation system commands via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
cyberpower | powerpanel | 𝑥 ≤ 4.8.6 |
cyberpower | powerpanel | 𝑥 ≤ 4.8.6 |
cyberpower | powerpanel | 𝑥 ≤ 4.8.6 |
cyberpower | powerpanel | 𝑥 ≤ 4.8.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References