1Panel是中国1panel社区的一个开源的Linux服务器运维管理面板。 1Panel 1.4.3版本存在路径遍历漏洞。攻击者利用该漏洞可以读取服务器上任意重要的配置文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| 1Panel-dev | 1Panel | = 1.4.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2023-39966 | 7.5 HIGH | 1Panel arbitrary file write vulnerability exists in the background |
| CVE-2023-39965 | 6.5 MEDIUM | 1Panel Unauthorized access in Backend |
No comments yet