Cross-site request forgery vulnerability exists in ajaxterm module of Webmin versions prior to 2.003. If this vulnerability is exploited, unintended operations may be performed when a user views a malicious page while logged in. As a result, data within a system may be referred, a webpage may be altered, or a server may be permanently halted.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://jvn.jp/en/jp/JVN81442045/ |
|
| https://webmin.com/ |
|
History
Wed, 08 Oct 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:webmin:webmin:*:*:*:*:*:*:*:* |
Tue, 05 Nov 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-352 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-11-05T21:12:24.776Z
Reserved: 2024-05-28T05:38:38.739Z
Link: CVE-2024-36452
Updated: 2024-08-02T03:37:05.210Z
Status : Analyzed
Published: 2024-07-10T07:15:03.103
Modified: 2025-10-08T16:53:35.350
Link: CVE-2024-36452
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:23:44Z
Weaknesses