Exploitation Summary
EIP tracks 1 public exploit for CVE-2019-13360.
AI-analyzed exploit summary This is a technical writeup detailing an authentication bypass vulnerability in CentOS Control Web Panel (CWP) versions 0.9.8.836 to 0.9.8.846. The vulnerability allows an attacker to bypass login by manipulating the base64-encoded response value returned after a failed login attempt.
Description
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, remote attackers can bypass authentication in the login process by leveraging knowledge of a valid username.
Exploits (1)
This is a technical writeup detailing an authentication bypass vulnerability in CentOS Control Web Panel (CWP) versions 0.9.8.836 to 0.9.8.846. The vulnerability allows an attacker to bypass login by manipulating the base64-encoded response value returned after a failed login attempt.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H