Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2022-44877

CWP | Control Web PanelAdded 2023-01-17Remediation Deadline 2023-02-07

CWP Control Web Panel OS Command Injection Vulnerability

CWP Control Web Panel (formerly CentOS Web Panel) contains an OS command injection vulnerability that allows remote attackers to execute commands via shell metacharacters in the login parameter.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-78

References