CVE-2024-36452: CSRF
Cross-site request forgery vulnerability exists in ajaxterm module of Webmin versions prior to 2.003. If this vulnerability is exploited, unintended operations may be performed when a user views a malicious page while logged in. As a result, data within a system may be referred, a webpage may be altered, or a server may be permanently halted.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-36452?
CVE-2024-36452 has been rated as a high severity vulnerability due to the potential for unauthorized actions via cross-site request forgery.
How do I fix CVE-2024-36452?
To fix CVE-2024-36452, it is recommended to upgrade Webmin to version 2.003 or later.
What versions of Webmin are affected by CVE-2024-36452?
CVE-2024-36452 affects Webmin ajaxterm versions prior to 2.003.
What can be exploited through CVE-2024-36452?
CVE-2024-36452 can be exploited to perform unintended operations when a user is logged in and views a malicious page.
What are the risks associated with CVE-2024-36452?
The risks associated with CVE-2024-36452 include potential data manipulation and unauthorized access to system functions.