Vulnerability index

Browse CVEs

61 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Webpanel CRITICAL 9.8
CVE-2020-15428EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15429EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15430EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15431EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15432EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15433EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15434EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15435EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15606EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15607EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15420EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-el7-0.9.8.891. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15421EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15422EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15423EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15424EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-15425EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication …

Mitigation only
Fix from $2,300 2020-07-28
Webpanel CRITICAL 9.8
CVE-2020-10230EPSS 15%

CentOS-WebPanel.com (aka CWP) CentOS Web Panel (for CentOS 6 and 7) allows SQL Injection via the /cwp_{SESSION_HASH}/admin/loader_ajax.php term param…

No fix yet
Fix from $2,300 2020-03-16
Webpanel HIGH 7.5
CVE-2019-14724

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to edit an e-mail forwarding destination…

No fix yet
Fix from $1,950 2019-09-11
Webpanel MEDIUM 5.4
CVE-2019-14726

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to access and delete DNS records of a vi…

No fix yet
Fix from $1,600 2019-09-10
Webpanel MEDIUM 6.5
CVE-2019-14721

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to remove a target user from phpMyAdmin …

No fix yet
Fix from $1,600 2019-09-10
Webpanel MEDIUM 5.4
CVE-2019-13476EPSS 7%

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, XSS in the domain parameter allows a low-privilege user to achieve root access via the e…

No fix yet
Fix from $1,600 2019-08-21
Webpanel HIGH 8.8
CVE-2019-13477

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, CSRF in the forgot password function allows an attacker to change the password for the r…

No fix yet
Fix from $1,950 2019-08-21
Webpanel MEDIUM 5.3
CVE-2019-13599

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.848, the Login process allows attackers to check whether a username is valid by comparing res…

No fix yet
Fix from $1,600 2019-08-21
Webpanel MEDIUM 6.1
CVE-2019-13387

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, Reflected XSS in filemanager2.php (parameter fm_current_dir) allows attackers to steal a…

No fix yet
Fix from $1,600 2019-07-26
Webpanel HIGH 7.5
CVE-2019-13359EPSS 26%

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, a cwpsrv-xxx cookie allows a normal user to craft and upload a session file to the /tmp …

No fix yet
Fix from $1,950 2019-07-16
Webpanel CRITICAL 9.8
CVE-2019-13360EPSS 24%

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, remote attackers can bypass authentication in the login process by leveraging knowledge …

No fix yet
Fix from $2,300 2019-07-16
Webpanel HIGH 8.8
CVE-2019-13605EPSS 15%

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.838 to 0.9.8.846, remote attackers can bypass authentication in the login process by leveragi…

No fix yet
Fix from $1,950 2019-07-16
Webpanel MEDIUM 5.3
CVE-2019-13383EPSS 14%

In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, the Login process allows attackers to check whether a username is valid by reading the H…

No fix yet
Fix from $1,600 2019-07-16
Webpanel MEDIUM 6.1
CVE-2018-18324

CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has XSS via the admin/fileManager2.php fm_current_dir parameter, or the admin/index.php modu…

No fix yet
Fix from $1,600 2018-10-15
Webpanel CRITICAL 9.8
CVE-2018-18322EPSS 15%

CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has Command Injection via shell metacharacters in the admin/index.php service_start, service…

No fix yet
Fix from $2,300 2018-10-15