Total vulnerabilities in the database
An issue was discovered in Webmin 2.021. One can exploit a stored Cross-Site Scripting (XSS) attack to achieve Remote Command Execution (RCE) through the Users and Group's real name parameter.
Software | From | Fixed in |
---|---|---|
webmin / webmin | 2.021 | 2.021.x |