High severity8.8NVD Advisory· Published Aug 15, 2019· Updated Jun 17, 2026
CVE-2019-12791
CVE-2019-12791
Description
A directory traversal vulnerability in the v-list-user script in Vesta Control Panel 0.9.8-24 allows remote attackers to escalate from regular registered users to root via the password reset form.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:vestacp:control_panel:0.9.8-24:*:*:*:*:*:*:*
- Vesta Control Panel/Vesta Control Paneldescription
- Range: <0.9.8-24
Patches
Vulnerability mechanics
References
2- cardaci.xyz/advisories/2019/08/12/vesta-control-panel-0.9.8-24-privilege-escalation-in-the-password-reset-form/nvdExploitThird Party Advisory
- github.com/serghey-rodin/vesta/issues/1921nvdThird Party Advisory
News mentions
0No linked articles in our index yet.