Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
VestaCP through 0.9.8-24 allows the admin user to escalate privileges to root because the Sudo configuration does not require a password to run /usr/local/vesta/bin scripts.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Vesta Control Panel 访问控制错误漏洞
Vulnerability Description
Vesta Control Panel(VestaCP)是一个开源的虚拟主机控制面板。 Vesta Control Panel 0.9.8-24版本及之前版本存在安全漏洞,该漏洞允许admin用户将权限升级到root,因为Sudo配置不需要密码就可以运行usr本地vesta bin脚本。
CVSS Information
N/A
Vulnerability Type
N/A