CVE-2002-0757: High severity Usermin Usermin vulnerability
(1) Webmin 0.96 and (2) Usermin 0.90 with password timeouts enabled allow local and possibly remote attackers to bypass authentication and gain privileges via certain control characters in the authentication information, which can force Webmin or Usermin to accept arbitrary username/session ID combinations.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0757?
CVE-2002-0757 is considered a high-severity vulnerability due to the potential for privilege escalation.
How do I fix CVE-2002-0757?
To fix CVE-2002-0757, upgrade Webmin and Usermin to the latest versions available that are not affected by this vulnerability.
Which versions are affected by CVE-2002-0757?
CVE-2002-0757 affects Webmin versions up to 0.96 and Usermin versions up to 0.90.
Can CVE-2002-0757 be exploited remotely?
Yes, CVE-2002-0757 can potentially be exploited both locally and remotely by an attacker.
What type of vulnerability is CVE-2002-0757?
CVE-2002-0757 is an authentication bypass vulnerability that allows attackers to bypass security measures.