First published: Mon Jul 25 2022(Updated: )
software/apt-lib.pl in Webmin before 1.997 lacks HTML escaping for a UI command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webmin Webmin | <1.997 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-36446 is critical with a CVSS score of 9.8.
CVE-2022-36446 is a vulnerability in software/apt-lib.pl in Webmin before version 1.997 that lacks HTML escaping for a UI command.
Webmin versions up to (but not including) 1.997 are affected by CVE-2022-36446.
To fix CVE-2022-36446, it is recommended to update Webmin to version 1.997 or later.
Additional information about CVE-2022-36446 can be found at the following references: [1] [2] [3].