A vulnerability classified as critical was found in CentOS-WebPanel.com CentOS Web Panel 6/7. This vulnerability affects unknown code of the file /cwp_{SESSION_HASH}/admin/loader_ajax.php. The manipulation of the argument term as part of Parameter leads to sql injection.
This vulnerability was named CVE-2020-10230. The attack can be initiated remotely. Furthermore, there is an exploit available.