First published: Wed Sep 13 2023(Updated: )
A Stored Cross-Site Scripting (XSS) vulnerability in the MIME type programs tab in Usermin 2.000 allows remote attackers to inject arbitrary web script or HTML via the description field while creating a new MIME type program.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webmin Usermin | =2.000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE ID of this vulnerability is CVE-2023-41158.
The severity of CVE-2023-41158 is medium with a CVSS score of 5.4.
The affected software is Usermin version 2.000.
The vulnerability allows remote attackers to inject arbitrary web script or HTML via the description field while creating a new MIME type program in the MIME type programs tab in Usermin 2.000.
As of now, there is no information available about an official fix for CVE-2023-41158. It is recommended to follow the references provided for any updates or patches.