First published: Thu Jul 07 2022(Updated: )
Command injection vulnerability in CWP v0.9.8.1126 that allows normal users to run commands as the root user.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CentOS Web Panel | =0.9.8.1126 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25048 is classified as a critical severity vulnerability because it allows normal users to execute commands as the root user.
To fix CVE-2022-25048, it is recommended to upgrade Control Web Panel to version 0.9.8.1127 or later.
CVE-2022-25048 affects users of Control Web Panel version 0.9.8.1126.
CVE-2022-25048 represents a command injection vulnerability that can lead to arbitrary code execution.
An attacker could exploit CVE-2022-25048 to run arbitrary commands on the server with root privileges.