Vulnerability Database

300,445

Total vulnerabilities in the database

CVE-2019-15641

xmlrpc.cgi in Webmin through 1.930 allows authenticated XXE attacks. By default, only root, admin, and sysadm can access xmlrpc.cgi.

  • Published: Aug 26, 2019
  • Updated: Nov 9, 2025
  • CVE: CVE-2019-15641
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:L/Au:S/C:C/I:N/A:N