Description
Improper Input Validation vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server and LiteSpeed Web Server dashboards allows Command Injection. This affects 1.7.0 versions before 1.7.16.1.
Published: 2022-10-27
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-15294 Improper Input Validation vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server and LiteSpeed Web Server dashboards allows Command Injection. This affects 1.7.0 versions before 1.7.16.1.
History

Mon, 05 May 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Litespeedtech Openlitespeed
cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published:

Updated: 2025-05-05T18:12:47.674Z

Reserved: 2021-12-28T23:57:03.945Z

Link: CVE-2022-0073

cve-icon Vulnrichment

Updated: 2024-08-02T23:18:41.683Z

cve-icon NVD

Status : Modified

Published: 2022-10-27T20:15:12.740

Modified: 2024-11-21T06:37:52.133

Link: CVE-2022-0073

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses