First published: Sun Jul 20 2014(Updated: )
Cross-site scripting (XSS) vulnerability in Webmin before 1.690, when referrer checking is disabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this might overlap CVE-2014-3924.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Webmin Webmin | <=1.680 | |
Webmin Webmin | =1.600 | |
Webmin Webmin | =1.610 | |
Webmin Webmin | =1.620 | |
Webmin Webmin | =1.630 | |
Webmin Webmin | =1.640 | |
Webmin Webmin | =1.650 | |
Webmin Webmin | =1.660 | |
Webmin Webmin | =1.670 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.