First published: Tue May 18 2021(Updated: )
The unprivileged user portal part of CentOS Web Panel is affected by a SQL Injection via the 'idsession' HTTP POST parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CentOS Web Panel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-31316 has been classified as a high-severity vulnerability due to its potential for SQL Injection exploits.
To fix CVE-2021-31316, update your CentOS Web Panel to the latest version that addresses this SQL Injection vulnerability.
CVE-2021-31316 impacts all versions of CentOS Web Panel prior to the patched release that resolves the SQL Injection flaw.
Exploiting CVE-2021-31316 could allow an unprivileged user to execute arbitrary SQL commands, potentially leading to unauthorized access or data manipulation.
Yes, CVE-2021-31316 specifically affects the unprivileged user portal functionality of the CentOS Web Panel.