Filtered by vendor Cyber Panel Subscriptions
Filtered by product Cyber Panel Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-51568 1 Cyber Panel 1 Cyber Panel 2024-11-01 10 Critical
CyberPanel (aka Cyber Panel) before 2.3.5 allows Command Injection via completePath in the ProcessUtilities.outputExecutioner() sink. There is /filemanager/upload (aka File Manager upload) unauthenticated remote code execution via shell metacharacters.