First published: Mon Jan 06 2020(Updated: )
The WebAdmin Console in OpenLiteSpeed before v1.6.5 does not strictly check request URLs, as demonstrated by the "Server Configuration > External App" screen.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Litespeedtech Openlitespeed | <1.6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.