logo

A Vulnerability in CWP (aka Control Web Panel or CentOS Web Panel) Could Allow for Remote Code Execution

ID: 1748e6db-0d2a-5ba2-a487-4b85c31d65bc

STIX ID: report--1748e6db-0d2a-5ba2-a487-4b85c31d65bc

Feed Name: CISecurity.org Advisories

Threat Score
70/100

Date Published: 2025-11-04

Date Updated: 2026-04-27

...
...

A remote code execution vulnerability has been discovered in Control Web Panel (CWP) that can allow authentication bypass and command injection via its web administration/user interfaces (commonly on ports 2087, 2031, and 2083). Successful exploitation could grant attackers administrative control of affected servers; the report explains the affected components and impact but provides no indicators of active exploitation or detailed exploit mechanics.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.