← Back to CVE List

CVE-2019-16295

Published: 2019-10-31T21:15Z
Last Modified: 2024-11-21T04:30Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Stored XSS in filemanager2.php in CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.885 exists via the cmd_arg parameter. This can be exploited by a local attacker who supplies a crafted filename within a directory visited by the victim. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt