Vulnerabilities (CVE)

Filtered by vendor Mgt-commerce Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-46157 1 Mgt-commerce 1 Cloudpanel 2023-12-12 N/A 8.8 HIGH
File-Manager in MGT CloudPanel 2.0.0 through 2.3.2 allows the lowest privilege user to achieve OS command injection by changing file ownership and changing file permissions to 4755.
CVE-2023-35885 1 Mgt-commerce 1 Cloudpanel 2023-08-02 N/A 9.8 CRITICAL
CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication.