Privilege Escalation in LiteSpeed Technologies OpenLiteSpeed web server version 1.7.8 allows attackers to gain root terminal access and execute commands on the host system.
References
Link | Resource |
---|---|
https://www.exploit-db.com/exploits/49556 | Exploit Third Party Advisory VDB Entry |
https://github.com/litespeedtech/openlitespeed/issues/217 | Exploit Third Party Advisory |
https://docs.unsafe-inline.com/0day/openlitespeed-web-server-1.7.8-command-injection-to-privilege-escalation-cve-2021-26758 | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-04-07 14:15
Updated : 2021-04-12 11:30
NVD link : CVE-2021-26758
Mitre link : CVE-2021-26758
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
litespeedtech
- openlitespeed