Disclosure summary
CWP Control Web Panel (formerly CentOS Web Panel) contains an OS command injection vulnerability that allows remote attackers to execute commands via shell metacharacters in the login parameter.
CISA remediation guidance
Apply updates per vendor instructions.
Original records & references
PUBLISHED 2023-01-17T00:00:00-05:00
MODIFIED 2023-01-17T00:00:00-05:00
INGESTED 2026-10-06T11:42:58-04:00