Description
An elevation of privilege in Vesta Control Panel through 0.9.8-26 allows an attacker to gain root system access from the admin account via v-change-user-password (aka the user password change script).
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-3200 | An elevation of privilege in Vesta Control Panel through 0.9.8-26 allows an attacker to gain root system access from the admin account via v-change-user-password (aka the user password change script). |
References
| Link | Providers |
|---|---|
| https://gitlab.com/snippets/1954764 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T11:14:15.556Z
Reserved: 2020-03-20T00:00:00.000Z
Link: CVE-2020-10787
No data.
Status : Modified
Published: 2020-04-21T17:15:12.193
Modified: 2024-11-21T04:56:04.233
Link: CVE-2020-10787
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD