Cross-site request forgery vulnerability exists in ajaxterm module of Webmin versions prior to 2.003. If this vulnerability is exploited, unintended operations may be performed when a user views a malicious page while logged in. As a result, data within a system may be referred, a webpage may be altered, or a server may be permanently halted.
History

Tue, 05 Nov 2024 22:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-352
Metrics cvssV3_1

{'score': 3.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2024-07-10T07:01:48.896Z

Updated: 2024-11-05T21:12:24.776Z

Reserved: 2024-05-28T05:38:38.739Z

Link: CVE-2024-36452

cve-icon Vulnrichment

Updated: 2024-08-02T03:37:05.210Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-10T07:15:03.103

Modified: 2024-11-05T22:35:06.080

Link: CVE-2024-36452

cve-icon Redhat

No data.