CVE-2024-42922: Command Injection
Published May 21, 2025
·Updated
AAPanel v7.0.7 was discovered to contain an OS command injection vulnerability.
Affected Software
2 affected components
aaPanel aaPanel
aaPanel aaPanel<=7.0.7
Event History
May 21, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-42922?
CVE-2024-42922 is classified as a critical severity vulnerability due to its potential for OS command injection.
2
How do I fix CVE-2024-42922?
To fix CVE-2024-42922, update AAPanel to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2024-42922?
CVE-2024-42922 affects AAPanel version 7.0.7, which is vulnerable to OS command injection.
4
What type of vulnerability is CVE-2024-42922?
CVE-2024-42922 is an OS command injection vulnerability that allows attackers to execute arbitrary commands on the server.
5
What are the potential consequences of CVE-2024-42922?
Exploitation of CVE-2024-42922 can lead to unauthorized access, data breaches, and complete system compromise.