CVE-2024-32739
- EPSS 61.87%
- Veröffentlicht 14.05.2024 15:37:04
- Zuletzt bearbeitet 23.10.2025 12:15:13
A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_ptask_verbose" function within MCUDBHelper.
CVE-2024-32735
- EPSS 74.68%
- Veröffentlicht 14.05.2024 15:37:03
- Zuletzt bearbeitet 23.10.2025 12:13:36
An issue regarding missing authentication for certain utilities exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can access the PDNU REST APIs, which may result in compromise of the application.
CVE-2024-32736
- EPSS 61.87%
- Veröffentlicht 14.05.2024 15:37:03
- Zuletzt bearbeitet 23.10.2025 12:14:01
A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_utask_verbose" function within MCUDBHelper.
CVE-2023-25133
- EPSS 0.31%
- Veröffentlicht 24.04.2023 11:15:07
- Zuletzt bearbeitet 21.11.2024 07:49:10
Improper privilege management vulnerability in default.cmd file in PowerPanel Business Local/Remote for Windows v4.8.6 and earlier, PowerPanel Business Management for Windows v4.8.6 and earlier, PowerPanel Business Local/Remote for Linux 32bit v4.8.6...
CVE-2023-25131
- EPSS 0.46%
- Veröffentlicht 24.04.2023 10:15:07
- Zuletzt bearbeitet 21.11.2024 07:49:10
Use of default password vulnerability in PowerPanel Business Local/Remote for Windows v4.8.6 and earlier, PowerPanel Business Management for Windows v4.8.6 and earlier, PowerPanel Business Local/Remote for Linux 32bit v4.8.6 and earlier, PowerPanel B...
CVE-2023-25132
- EPSS 0.32%
- Veröffentlicht 24.04.2023 10:15:07
- Zuletzt bearbeitet 21.11.2024 07:49:10
Unrestricted upload of file with dangerous type vulnerability in default.cmd file in PowerPanel Business Local/Remote for Windows v4.8.6 and earlier, PowerPanel Business Management for Windows v4.8.6 and earlier, PowerPanel Business Local/Remote for ...