CVE-2022-44877CISA KEVEPSS p100.0%
CVE-2022-44877CWP Control Web Panel OS Command Injection Vulnerability
CWP / Control Web Panel
Description
CWP Control Web Panel (formerly CentOS Web Panel) contains an OS command injection vulnerability that allows remote attackers to execute commands via shell metacharacters in the login parameter.
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 100.00% probability of exploitation · percentile 100.0% · 2026-06-28T12:03:37Z |
| Last modified | 2026-06-17 |
CISA KEV entry
Added to KEV: 2023-01-17
(incoming)1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| KEVEntry | CWP Control Web Panel OS Command Injection Vulnerabilitykev-cve-2022-44877 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.