Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gq3p-5rgr-j77q

Опубликовано: 11 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.5

Описание

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote arguments. This is relevant if Webmin's Squid module and its Cache Manager feature are available, and an untrusted party is able to authenticate to Webmin and has certain Cache Manager permissions (the "cms" security option).

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote arguments. This is relevant if Webmin's Squid module and its Cache Manager feature are available, and an untrusted party is able to authenticate to Webmin and has certain Cache Manager permissions (the "cms" security option).

EPSS

Процентиль: 23%
0.00311
Низкий

8.5 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 8.5
nvd
8 месяцев назад

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote arguments. This is relevant if Webmin's Squid module and its Cache Manager feature are available, and an untrusted party is able to authenticate to Webmin and has certain Cache Manager permissions (the "cms" security option).

CVSS3: 8.5
debian
8 месяцев назад

squid/cachemgr.cgi in Webmin before 2.600 does not properly quote argu ...

CVSS3: 8.5
fstec
8 месяцев назад

Уязвимость панели управления хостингом Webmin, связанная с непринятием мер по нейтрализации специальных элементов, используемых в команде операционной системы, позволяющая нарушителю выполнить произвольные команды

CVSS3: 8.5
redos
4 месяца назад

Уязвимость webmin

EPSS

Процентиль: 23%
0.00311
Низкий

8.5 High

CVSS3

Дефекты

CWE-78