CVE-2019-13386: High severity centos web panel vulnerability
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, a hidden action=9 feature in filemanager2.php allows attackers to execute a shell command, i.e., obtain a reverse shell with user privilege.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-13386?
CVE-2019-13386 has been rated as a high severity vulnerability due to its potential to allow unauthorized remote command execution.
How do I fix CVE-2019-13386?
To fix CVE-2019-13386, upgrade to a patched version of CentOS Web Panel that addresses this vulnerability.
What type of attack does CVE-2019-13386 enable?
CVE-2019-13386 enables attackers to execute arbitrary shell commands by exploiting a hidden feature in filemanager2.php.
Which software versions are affected by CVE-2019-13386?
CVE-2019-13386 affects CentOS Web Panel version 0.9.8.846.
What are the potential impacts of CVE-2019-13386?
The potential impacts of CVE-2019-13386 include unauthorized remote access to the server, leading to possible data breaches or server compromise.