A Stored Cross-Site Scripting (XSS) vulnerability in the Create Virtual Server in Virtualmin 7.7 allows remote attackers to inject arbitrary web script or HTML via Description field while creating the Virtual server.
| Software | From | Fixed in |
|---|---|---|
| virtualmin / virtualmin | 7.7 | 7.7.x |