CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. Its EPSS score suggests a 55.3% probability of exploitation in the next 30 days.
CVE
CVE-2021-45466
Severity
CRITICAL
CVSS
9.8
EPSS
55.34%
Original NVD Description
In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=add_server&DHCP= to add an authorized_keys text file in the /resources/ folder.
Related CVEs
Other vulnerabilities affecting the same vendor(s)