Cross-site scripting vulnerability exists in sysinfo.cgi of Webmin versions prior to 1.910. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product. As a result, a session ID may be obtained, a webpage may be altered, or a server may be halted.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2024-07-10T07:01:07.082Z

Updated: 2024-08-02T03:37:05.132Z

Reserved: 2024-05-28T05:38:38.738Z

Link: CVE-2024-36450

cve-icon Vulnrichment

Updated: 2024-07-10T13:13:33.978Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-10T07:15:02.893

Modified: 2024-07-31T14:47:05.423

Link: CVE-2024-36450

cve-icon Redhat

No data.