CVE-2021-26758: Critical severity openlitespeed vulnerability
Published Apr 7, 2021
·Updated
Privilege Escalation in LiteSpeed Technologies OpenLiteSpeed web server version 1.7.8 allows attackers to gain root terminal access and execute commands on the host system.
Affected Software
1 affected component
Litespeedtech Openlitespeed=1.7.8
Event History
Apr 7, 2021
CVE Published
via MITRE·08:50 PM
Data Sourced
via MITRE·08:50 PM
Description
Frequently Asked Questions
1
What is CVE-2021-26758?
CVE-2021-26758 is a vulnerability in LiteSpeed Technologies OpenLiteSpeed web server version 1.7.8 that allows attackers to gain root terminal access and execute commands on the host system.
2
How severe is CVE-2021-26758?
CVE-2021-26758 has a severity rating of 8.8, which is considered critical.
3
How does CVE-2021-26758 affect OpenLiteSpeed web server?
CVE-2021-26758 affects OpenLiteSpeed web server version 1.7.8, allowing attackers to gain root terminal access and execute commands on the host system.
4
How can I fix CVE-2021-26758?
To fix CVE-2021-26758, it is recommended to update OpenLiteSpeed web server to a version that is not affected by the vulnerability.