CVE-2019-14724: High severity centos web panel vulnerability
Published Sep 11, 2019
·Updated
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to edit an e-mail forwarding destination of a victim's account via an attacker account.
Affected Software
1 affected component
Control-webpanel Webpanel=0.9.8.851
Event History
Sep 11, 2019
CVE Published
via MITRE·11:28 AM
Data Sourced
via MITRE·11:28 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14724?
CVE-2019-14724 is considered to have a medium severity due to its potential for unauthorized email manipulation.
2
How do I fix CVE-2019-14724?
To fix CVE-2019-14724, update to the latest version of CentOS Web Panel that addresses this vulnerability.
3
What kind of attack can CVE-2019-14724 facilitate?
CVE-2019-14724 can facilitate unauthorized alteration of email forwarding settings of user accounts.
4
Who is affected by CVE-2019-14724?
Users of CentOS Web Panel version 0.9.8.851 are affected by CVE-2019-14724.
5
What can an attacker do with CVE-2019-14724?
An attacker can modify email forwarding destinations for accounts, potentially leading to loss of privacy and data.