Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-46850

myVesta Control Panel before 0.9.8-26-43 and Vesta Control Panel before 0.9.8-26 are vulnerable to command injection. An authenticated and remote administrative user can execute arbitrary commands via the v_sftp_license parameter when sending HTTP POST requests to the /edit/server endpoint.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.171
EPSS Ranking 94.6%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2021-46850


Contact Us

Shodan ® - All rights reserved