CVE-2019-14725: Medium severity centos web panel vulnerability
Published Sep 11, 2019
·Updated
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to change the e-mail usage value of a victim account via an attacker account.
Affected Software
1 affected component
Control-webpanel Webpanel=0.9.8.851
Event History
Sep 11, 2019
CVE Published
via MITRE·11:26 AM
Data Sourced
via MITRE·11:26 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-14725?
CVE-2019-14725 is classified as a high severity vulnerability due to its potential impact on user account security.
2
How do I fix CVE-2019-14725?
To fix CVE-2019-14725, update CentOS Web Panel to the latest version that addresses this vulnerability.
3
What versions of CentOS Web Panel are affected by CVE-2019-14725?
CVE-2019-14725 specifically affects CentOS Web Panel version 0.9.8.851.
4
What does CVE-2019-14725 exploit?
CVE-2019-14725 exploits an insecure object reference that allows an attacker to manipulate email usage values of other user accounts.
5
Can CVE-2019-14725 lead to further exploitation?
Yes, CVE-2019-14725 can lead to privilege escalation and potentially allow attackers to perform unauthorized actions on affected accounts.