CVE-2017-2106: XSS
Published Apr 28, 2017
·Updated
Multiple cross-site scripting vulnerabilities in Webmin versions prior to 1.830 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
1 affected component
webmin webmin<=1.820
Remediation
Event History
Apr 28, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-2106?
CVE-2017-2106 is classified as a high-severity vulnerability due to its potential for exploitation through cross-site scripting.
2
How do I fix CVE-2017-2106?
To fix CVE-2017-2106, upgrade Webmin to version 1.830 or later.
3
What versions of Webmin are affected by CVE-2017-2106?
CVE-2017-2106 affects all versions of Webmin prior to 1.830.
4
What kind of attack can be executed using CVE-2017-2106?
CVE-2017-2106 allows remote attackers to execute arbitrary web scripts or HTML through cross-site scripting.
5
Is CVE-2017-2106 being actively exploited?
While specific active exploitation details are not publicly documented, the nature of the vulnerability makes it a potential target for attackers.