Privilege Escalation in LiteSpeed Technologies OpenLiteSpeed web server version 1.7.8 allows attackers to gain root terminal access and execute commands on the host system.
References
Link | Resource |
---|---|
https://docs.unsafe-inline.com/0day/openlitespeed-web-server-1.7.8-command-injection-to-privilege-escalation-cve-2021-26758 | Exploit Third Party Advisory |
https://github.com/litespeedtech/openlitespeed/issues/217 | Exploit Third Party Advisory |
https://www.exploit-db.com/exploits/49556 | Exploit Third Party Advisory VDB Entry |
https://docs.unsafe-inline.com/0day/openlitespeed-web-server-1.7.8-command-injection-to-privilege-escalation-cve-2021-26758 | Exploit Third Party Advisory |
https://github.com/litespeedtech/openlitespeed/issues/217 | Exploit Third Party Advisory |
https://www.exploit-db.com/exploits/49556 | Exploit Third Party Advisory VDB Entry |
Configurations
History
21 Nov 2024, 05:56
Type | Values Removed | Values Added |
---|---|---|
References | () https://docs.unsafe-inline.com/0day/openlitespeed-web-server-1.7.8-command-injection-to-privilege-escalation-cve-2021-26758 - Exploit, Third Party Advisory | |
References | () https://github.com/litespeedtech/openlitespeed/issues/217 - Exploit, Third Party Advisory | |
References | () https://www.exploit-db.com/exploits/49556 - Exploit, Third Party Advisory, VDB Entry |
Information
Published : 2021-04-07 21:15
Updated : 2024-11-21 05:56
NVD link : CVE-2021-26758
Mitre link : CVE-2021-26758
CVE.ORG link : CVE-2021-26758
JSON object : View
Products Affected
litespeedtech
- openlitespeed
CWE
CWE-269
Improper Privilege Management