PT-2021-19237 · Unknown · Centos Web Panel

Published

2021-05-18

·

Updated

2023-01-24

·

CVE-2021-31316

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions CentOS Web Panel (affected versions not specified)
Description The issue affects the unprivileged user portal part of CentOS Web Panel, where a SQL Injection is possible via the idsession HTTP POST parameter.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2021-31316

Affected Products

Centos Web Panel