PT-2022-17811 · Hestiacp · Hestiacp

Published

2022-08-05

·

Updated

2023-07-12

·

CVE-2022-2636

CVSS v3.1

8.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions hestiacp/hestiacp versions prior to 1.6.6
Description The issue is related to improper control of generation of code, also known as 'code injection', and improper input validation in the hestiacp/hestiacp GitHub repository.
Recommendations For versions prior to 1.6.6, update to version 1.6.6 or later to resolve the issue.

Exploit

Fix

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2022-2636

Affected Products

Hestiacp