CentOS Web Panel(CWP)是一款免费的虚拟主机控制面板。 CentOS Web Panel cwp-el7-0.9.8.891版本中的ajax_ftp_manager.php文件存在操作系统命令注入漏洞,该漏洞源于在使用用户提供的字符串执行系统调用之前,程序没有进行正确的验证。攻击者可利用该漏洞执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CentOS Web Panel | CentOS Web Panel | cwp-e17.0.9.8.923 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-15620 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15610 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15611 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15612 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15613 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15614 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15616 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15617 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15618 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15619 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15609 | CentOS Web Panel 操作系统命令注入漏洞 | |
| CVE-2020-15621 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15622 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15623 | CentOS Web Panel 安全漏洞 | |
| CVE-2020-15624 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15625 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15626 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15627 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15628 | CentOS Web Panel SQL注入漏洞 | |
| CVE-2020-15430 | CentOS Web Panel 操作系统命令注入漏洞 |
Showing top 20 of 39 CVEs. View all on vendor page → →
No comments yet