CVE-2023-40982: XSS
A stored cross-site scripting (XSS) vulnerability in Webmin v2.100 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cloned module name parameter.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability identifier for the stored cross-site scripting (XSS) vulnerability in Webmin v2.100?
The vulnerability identifier for the stored cross-site scripting (XSS) vulnerability in Webmin v2.100 is CVE-2023-40982.
What is the severity of CVE-2023-40982?
The severity of CVE-2023-40982 is medium with a CVSS score of 5.4.
How does the stored cross-site scripting (XSS) vulnerability in Webmin v2.100 work?
The stored cross-site scripting (XSS) vulnerability in Webmin v2.100 allows attackers to execute arbitrary web scripts or HTML by injecting a crafted payload into the cloned module name parameter.
Which software version is affected by CVE-2023-40982?
Version 2.100 of Webmin is affected by CVE-2023-40982.
How can I fix the stored cross-site scripting (XSS) vulnerability in Webmin v2.100?
To fix the stored cross-site scripting (XSS) vulnerability in Webmin v2.100, update to a version that has the vulnerability patched.