CVE-2024-39911

1Panel is a web-based linux server management control panel. 1Panel contains an unspecified sql injection via User-Agent handling. This issue has been addressed in version 1.10.12-lts. Users are advised to upgrade. There are no known workarounds for this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:fit2cloud:1panel:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-07-18 16:15

Updated : 2024-11-21 09:28


NVD link : CVE-2024-39911

Mitre link : CVE-2024-39911

CVE.ORG link : CVE-2024-39911


JSON object : View

Products Affected

fit2cloud

  • 1panel
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')