CVE-2023-41163: XSS
A Reflected Cross-site scripting (XSS) vulnerability in the file manager tab in Usermin 2.000 allows remote attackers to inject arbitrary web script or HTML via the replace in results field while replacing the results under the tools drop down.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-41163?
CVE-2023-41163 is a Reflected Cross-site scripting (XSS) vulnerability in the file manager tab in Usermin 2.000.
How does CVE-2023-41163 affect Usermin?
CVE-2023-41163 allows remote attackers to inject arbitrary web script or HTML via the replace in results field while replacing the results under the tools drop down in Usermin 2.000.
What is the severity of CVE-2023-41163?
The severity of CVE-2023-41163 is medium with a severity value of 6.1.
How can I fix CVE-2023-41163 in Usermin?
To fix CVE-2023-41163 in Usermin, update to a version that is not affected by the vulnerability. Check the official Webmin website for the latest updates.
What is CWE-79?
CWE-79 is a weakness in software that allows an attacker to execute arbitrary code or commands through web scripting.