← Back to browse · API

CVE-2024-39911

Severity
CRITICAL
CVSS
10.0
EPSS
0.04528
Risk score
41.58
CISA KEV
No
PoC
No
Published
2024-07-18
Modified
2025-02-13
First seen
2026-08-07
Aliases
EUVD-2024-38295
Products
1Panel-dev:1Panel < 1.10.12-lts
Sources
euvd EUVD-2024-38295

Description

1Panel is a web-based linux server management control panel. 1Panel contains an unspecified sql injection via User-Agent handling. This issue has been addressed in version 1.10.12-lts. Users are advised to upgrade. There are no known workarounds for this vulnerability.

References