CVE-2021-37158

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
10/11/2021
Last modified:
12/11/2021

Description

An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14. An authenticated attacker could inject OS commands by starting a Counter-Strike server and using the map field to enter a Bash command.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:opengamepanel:opengamepanel:*:*:*:*:*:linux_kernel:*:* 2021-08-14 (including)