ZeroHour

CVE-2022-0073

PoC ×2
CVSS 3.1
8.8 high
EPSS
9%p95
Published
()
Modified
Description

Improper Input Validation vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server and LiteSpeed Web Server dashboards allows Command Injection. This affects 1.7.0 versions before 1.7.16.1.

Vendors
litespeedtech
Products
openlitespeed
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news