Medium severity6.5NVD Advisory· Published Aug 21, 2019· Updated Jun 17, 2026
CVE-2019-14246
CVE-2019-14246
Description
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to discover phpMyAdmin passwords (of any user in /etc/passwd) via an attacker account.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:centos-webpanel:centos_web_panel:0.9.8.851:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:centos-webpanel:centos_web_panel:0.9.8.851:*:*:*:*:*:*:*
- (no CPE)range: = 0.9.8.851
- CentOS-WebPanel.com/CentOS Web Paneldescription
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/154156/CentOS-Control-Web-Panel-CWP-0.9.8.851-phpMyAdmin-Password-Change.htmlnvdExploitThird Party AdvisoryVDB Entry
- packetstormsecurity.com/files/154156/CentOS-WebPanel.com-CentOS-Control-Web-Panel-CWP-0.9.8.851-phpMyAdmin-Password-Change.htmlnvdExploitThird Party AdvisoryVDB Entry
- packetstormsecurity.com/files/154156/CentOS-WebPanel.com-Control-Web-Panel-CWP-0.9.8.851-phpMyAdmin-Password-Change.htmlnvdExploitThird Party AdvisoryVDB Entry
- centos-webpanel.com/changelog-cwp7nvdRelease Notes
News mentions
0No linked articles in our index yet.