Known Vulnerabilities for Cloudpanel by Mgt-commerce
Listed below are 4 of the newest known vulnerabilities associated with "Cloudpanel" by "Mgt-commerce".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-24525 json | Missing Authorization vulnerability in CloudPanel CLP Varnish Cache clp-varnish-cache allows Exploiting Incorrectly Configure... | Not Provided | 2026-01-23 | 2026-04-28 |
| CVE-2024-44765 json | An Improper Authorization (Access Control Misconfiguration) vulnerability in MGT-COMMERCE GmbH CloudPanel v2.0.0 to v2.4.2 al... | Not Provided | 2024-11-08 | 2026-07-05 |
| CVE-2023-36630 json | In CloudPanel before 2.3.1, insecure file upload leads to privilege escalation and authentication bypass. | 8.8 - HIGH | 2023-06-25 | 2023-07-03 |
| CVE-2023-35885 json | CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication. | 9.8 - CRITICAL | 2023-06-20 | 2023-08-02 |
| CVE-2023-33747 json | CloudPanel v2.2.2 allows attackers to execute a path traversal. | 7.8 - HIGH | 2023-06-06 | 2023-06-12 |
| CVE-2023-0391 json | MGT-COMMERCE CloudPanel ships with a static SSL certificate to encrypt communications to the administrative interface, shared... | 8.1 - HIGH | 2023-03-21 | 2023-03-27 |