CVE-2023-47098: XSS
A Stored Cross-Site Scripting (XSS) vulnerability in the Manage Extra Admins under Administration Options in Virtualmin 7.7 allows remote attackers to inject arbitrary web script or HTML via the real name or description field.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-47098?
CVE-2023-47098 is a Stored Cross-Site Scripting (XSS) vulnerability in the Manage Extra Admins under Administration Options in Virtualmin 7.7.
How does the vulnerability CVE-2023-47098 work?
The CVE-2023-47098 vulnerability allows remote attackers to inject arbitrary web script or HTML via the real name or description field in the Manage Extra Admins section of Virtualmin 7.7.
How severe is CVE-2023-47098?
CVE-2023-47098 has a severity rating of medium (4.8).
Which software versions are affected by CVE-2023-47098?
The vulnerability affects Virtualmin 7.7.
How can I fix CVE-2023-47098?
To fix CVE-2023-47098, users should update to a version of Virtualmin that includes the necessary security patches.