Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxpr-3h84-j6hp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Webmin 1.973 is affected by Cross Site Request Forgery (CSRF) to create a privileged user through Webmin's add users feature, and then get a reverse shell through Webmin's running process feature.

Webmin 1.973 is affected by Cross Site Request Forgery (CSRF) to create a privileged user through Webmin's add users feature, and then get a reverse shell through Webmin's running process feature.

EPSS

Процентиль: 96%
0.22718
Средний

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 8.8
nvd
почти 5 лет назад

Webmin 1.973 is affected by Cross Site Request Forgery (CSRF) to create a privileged user through Webmin's add users feature, and then get a reverse shell through Webmin's running process feature.

CVSS3: 8.8
debian
почти 5 лет назад

Webmin 1.973 is affected by Cross Site Request Forgery (CSRF) to creat ...

EPSS

Процентиль: 96%
0.22718
Средний

Дефекты

CWE-352