CVE-2023-46157
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2023-46157 is a vulnerability affecting the File-Manager component in MGT CloudPanel versions 2.0.0 to 2.3.2. This issue permits low-privilege users to execute OS commands through a combination of file ownership and permissions manipulation, specifically setting the file permission to 4755. The vulnerability poses a significant security risk, allowing potential attackers to gain elevated access and carry out malicious activities within the system. System administrators are strongly advised to update their MGT CloudPanel installations to the latest version to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.