CVE-2025-50860: Ehcp Easy Hosting Control Panel
Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.
SQL Injection in the listdomains function in Easy Hosting Control Panel (EHCP) 20.04.1.b allows authenticated attackers to access or manipulate database contents via the arananalan POST parameter.
Affected products
- Ehcp Easy Hosting Control Panel: version 20.04.1.b only
Published 2025-08-21. Last modified 2026-06-17.