PT-2022-10067 · Webmin · Webmin

Mesh3L_911

+1

·

Published

2022-04-11

·

Updated

2022-04-15

·

CVE-2021-32158

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Webmin version 1.973
Description A Cross-Site Scripting (XSS) issue exists via the Upload and Download feature.
Recommendations For Webmin version 1.973, consider disabling the Upload and Download feature until a patch is available. Restrict access to this feature to minimize the risk of exploitation.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-32158

Affected Products

Webmin