PoC Index

CVE-2002-1673

LOW 3.6EPSS 0.8%

The web interface for Webmin 0.92 does not properly quote or filter script code in files that are displayed to the interface, which allows local users to execute script and possibly steal cookies by inserting the script into certain files or fields, such as a real user name entry in the passwd file.

CVSS v2.0
3.6 LOWAV:L/AC:L/Au:N/C:P/I:P/A:N
EPSS
0.79% chance of exploitation in the next 30 days, 54th percentile
Published
2005-06-21
Updated
2024-08-08

ExploitDB entries (1)

References

Related