Multiple Cross-site scripting (XSS) vulnerabilities in Webmin before 1.850 allow remote attackers to inject arbitrary web script or HTML via the sec parameter to view_man.cgi, the referers parameter to change_referers.cgi, or the name parameter to save_user.cgi. NOTE: these issues were not fixed in 1.840.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-07-04T02:00:00
Updated: 2024-08-05T17:02:44.374Z
Reserved: 2017-05-30T00:00:00
Link: CVE-2017-9313
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-07-04T02:29:00.283
Modified: 2024-11-21T03:35:48.980
Link: CVE-2017-9313
Redhat
No data.