Vulnerabilities
Vulnerable Software
Usermin:  >> Usermin  >> 1.210  Security Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in chooser.cgi in Webmin before 1.330 and Usermin before 1.260 allow remote attackers to inject arbitrary web script or HTML via a crafted filename.
CVSS Score
4.3
EPSS Score
0.002
Published
2007-03-05
Webmin before 1.296 and Usermin before 1.226 do not properly handle a URL with a null ("%00") character, which allows remote attackers to conduct cross-site scripting (XSS), read CGI program source code, list directories, and possibly execute programs.
CVSS Score
6.8
EPSS Score
0.028
Published
2006-09-05


Contact Us

Shodan ® - All rights reserved