Where
-Infinity
0

Vendor Risk Score

See how control-webpanel compares to other vendors in security performance

View Risk Score →

Control Web Panel CWPCWP Control Web Panel OS Command Injection Vulnerability

Risk 96
Severity
9
First published (updated )

Control Web Panel Control Web Panel(0Day) Control Web Panel mysql_manager Command Injection Remote Code Execution Vulnerability

Risk 81
Severity
8.8
First published (updated )

Control Web Panel Control Web Panel(0Day) Control Web Panel wloggui Command Injection Local Privilege Escalation Vulnerability

Risk 71
Severity
7.8
First published (updated )

Control Web Panel Control Web Panel(0Day) Control Web Panel Missing Authentication Remote Code Execution Vulnerability

Risk 88
Severity
9.8
First published (updated )

Control Web Panel Control Web Panel(0Day) Control Web Panel dns_zone_editor Command Injection Remote Code Execution Vulnerability

Risk 81
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Control-webpanel WebpanelCWP Control Web Panel OS Command Injection Vulnerability

Risk 99
Severity
9.8
First published (updated )

Control-webpanel WebpanelIn CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted r…

Risk 86
Severity
9.8
First published (updated )

Control-webpanel WebpanelIn CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, an unauthenticated attacker ca…

Risk 86
Severity
9.8
First published (updated )

Control-webpanel WebpanelOS Command Injection, Command Injection

Risk 78
Severity
9
First published (updated )

Control-webpanel WebpanelThe password reset token in CWP v0.9.8.1126 is generated using known or predictable values.

Risk 35
Severity
5.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Control-webpanel WebpanelPath Traversal

Risk 87
Severity
10
First published (updated )

Control-webpanel WebpanelSQL Injection

Risk 87
Severity
10
First published (updated )

Control-webpanel WebpanelOS Command Injection, Command Injection

Risk 87
Severity
10
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_mail_autoreply account SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_mail_autoreply user SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_add_mailbox username SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_dashboard term SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_mod_security archivo Arbitrary File Write Remote Code Execution Vulnerability

Risk 88
Severity
10
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_new_account domain SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_mail_autoreply search SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_mail_autoreply email SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_list_accounts id SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_list_accounts type SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_list_accounts status SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_list_accounts username SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_list_accounts package SQL Injection Information Disclosure Vulnerability

Risk 45
Severity
7.8
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_php_pecl cha Command Injection Remote Code Execution Vulnerability

Risk 88
Severity
10
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_ftp_manager Command Injection Remote Code Execution Vulnerability

Risk 88
Severity
10
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_admin_apis line Command Injection Remote Code Execution Vulnerability

Risk 88
Severity
10
First published (updated )

Control-webpanel Webpanel(0Day) CentOS Web Panel ajax_ftp_manager userLogin Command Injection Remote Code Execution Vulnerability

Risk 88
Severity
10
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203