Loading
Generated remediation guidance and an executive summary. No account required.
In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=add_server&DHCP= to add an authorized_keys text file in the /resources/ folder.
Use CWE-863, Control-Webpanel vendor hub and Webpanel product page to widen CVE-2021-45466 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-44877, CVE-2025-48703 and CVE-2023-42121 for nearby disclosures in the same product family.