First published: Sun Apr 25 2021(Updated: )
Webmin 1.973 is affected by Cross Site Request Forgery (CSRF) to achieve Remote Command Execution (RCE) through Webmin's running process feature.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webmin Webmin | =1.973 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-31760 is a vulnerability in Webmin 1.973 that allows an attacker to achieve remote command execution through Cross Site Request Forgery (CSRF) in Webmin's running process feature.
The severity of CVE-2021-31760 is rated as high, with a CVSS score of 8.8.
An attacker can exploit CVE-2021-31760 by leveraging Cross Site Request Forgery (CSRF) to execute remote commands using Webmin's running process feature.
To mitigate the risk of CVE-2021-31760, it is recommended to update Webmin to a version that includes a fix for this vulnerability.
You can find more information about CVE-2021-31760 on the official Webmin GitHub repository as well as other related GitHub repositories.