Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-67738

Опубликовано: 11 дек. 2025
Источник: debian
EPSS Низкий

Описание

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote arguments. This is relevant if Webmin's Squid module and its Cache Manager feature are available, and an untrusted party is able to authenticate to Webmin and has certain Cache Manager permissions (the "cms" security option).

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webminremovedpackage

EPSS

Процентиль: 23%
0.00311
Низкий

Связанные уязвимости

CVSS3: 8.5
nvd
8 месяцев назад

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote arguments. This is relevant if Webmin's Squid module and its Cache Manager feature are available, and an untrusted party is able to authenticate to Webmin and has certain Cache Manager permissions (the "cms" security option).

CVSS3: 8.5
github
8 месяцев назад

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote arguments. This is relevant if Webmin's Squid module and its Cache Manager feature are available, and an untrusted party is able to authenticate to Webmin and has certain Cache Manager permissions (the "cms" security option).

CVSS3: 8.5
fstec
8 месяцев назад

Уязвимость панели управления хостингом Webmin, связанная с непринятием мер по нейтрализации специальных элементов, используемых в команде операционной системы, позволяющая нарушителю выполнить произвольные команды

CVSS3: 8.5
redos
4 месяца назад

Уязвимость webmin

EPSS

Процентиль: 23%
0.00311
Низкий