PoC Index

CVE-2024-32735

CRITICAL 9.8EPSS 6.8%

An issue regarding missing authentication for certain utilities exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can access the PDNU REST APIs, which may result in compromise of the application.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
6.77% chance of exploitation in the next 30 days, 94th percentile
Nuclei
critical · CWE-306
Published
2024-05-09
Updated
2024-08-02

Nuclei templates (1)

References

Related