Vulnerability Details CVE-2024-39911
1Panel is a web-based linux server management control panel. 1Panel contains an unspecified sql injection via User-Agent handling. This issue has been addressed in version 1.10.12-lts. Users are advised to upgrade. There are no known workarounds for this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.376
EPSS Ranking 97.0%
CVSS Severity
CVSS v3 Score 10.0
Products affected by CVE-2024-39911
-
cpe:2.3:a:fit2cloud:1panel:1.10.10-lts