First published: Mon Apr 28 2025(Updated: )
Usermin 0.980 through 1.x before 1.660 allows uconfig_save.cgi sig_file_free remote code execution because it uses the two argument (not three argument) form of Perl open.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webmin Usermin | >=0.980<1.660 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2079 has a medium severity rating as it allows for remote code execution.
To fix CVE-2015-2079, you should upgrade Usermin to version 1.660 or later.
Usermin versions from 0.980 up to, but not including, 1.660 are affected by CVE-2015-2079.
CVE-2015-2079 is a remote code execution vulnerability.
Users running vulnerable versions of Usermin prior to 1.660 are impacted by CVE-2015-2079.