CentOS Web Panel(CWP)是一款免费的虚拟主机控制面板。 CentOS Web Panel cwp-el7-0.9.8.891版本中的ajax_dashboard.php文件存在操作系统命令注入漏洞,该漏洞源于在执行系统调用之前未正确验证用户提供的字符串。攻击者可利用该漏洞执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CentOS Web Panel | CentOS Web Panel | cwp-e17.0.9.8.923 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-15620 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15611 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15612 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15613 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15614 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15615 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15616 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15617 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15618 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15619 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15610 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15621 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15622 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15623 | CentOS Web Panel 安全漏洞 | |
| CVE-2020-15624 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15625 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15626 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15627 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15628 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15430 | CentOS Web Panel 操作系统命令注入漏洞 |
Showing top 20 of 39 CVEs. View all on vendor page → →
No comments yet