PT-2021-19495 · Webmin · Webmin

Mesh3L_911

+1

·

Published

2021-04-25

·

Updated

2021-12-08

·

CVE-2021-31761

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Webmin version 1.973
Description The issue is related to reflected Cross Site Scripting (XSS) that can lead to Remote Command Execution. This is achieved through Webmin's running process feature.
Recommendations For Webmin version 1.973, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-31761

Affected Products

Webmin