Cross-site scripting (XSS) vulnerability in view.cgi in Webmin before 1.680 allows remote attackers to inject arbitrary web script or HTML via the search parameter.
| Software | From | Fixed in |
|---|---|---|
| webmin / webmin | 1.620 | 1.620.x |
| webmin / webmin | 1.660 | 1.660.x |
| webmin / webmin | 1.640 | 1.640.x |
| webmin / webmin | 1.630 | 1.630.x |
| webmin / webmin | - | 1.670.x |
| webmin / webmin | 1.650 | 1.650.x |
| webmin / webmin | 1.600 | 1.600.x |
| webmin / webmin | 1.610 | 1.610.x |