Логотип exploitDog
bind: "CVE-2023-38306"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2023-38306"

Количество 5

Количество 5

nvd логотип

CVE-2023-38306

около 2 лет назад

An issue was discovered in Webmin 2.021. A Cross-site Scripting (XSS) Bypass vulnerability was discovered in the file upload functionality. Normally, the application restricts the upload of certain file types such as .svg, .php, etc., and displays an error message if a prohibited file type is detected. However, by following certain steps, an attacker can bypass these restrictions and inject malicious code.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2023-38306

около 2 лет назад

An issue was discovered in Webmin 2.021. A Cross-site Scripting (XSS) ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-393c-4g2g-74rm

около 2 лет назад

An issue was discovered in Webmin 2.021. A Cross-site Scripting (XSS) Bypass vulnerability was discovered in the file upload functionality. Normally, the application restricts the upload of certain file types such as .svg, .php, etc., and displays an error message if a prohibited file type is detected. However, by following certain steps, an attacker can bypass these restrictions and inject malicious code.

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2023-04472

около 2 лет назад

Уязвимость панели управления хостингом Webmin, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)

CVSS3: 6.1
EPSS: Низкий
redos логотип

ROS-20240918-04

12 месяцев назад

Множественные уязвимости webmin

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-38306

An issue was discovered in Webmin 2.021. A Cross-site Scripting (XSS) Bypass vulnerability was discovered in the file upload functionality. Normally, the application restricts the upload of certain file types such as .svg, .php, etc., and displays an error message if a prohibited file type is detected. However, by following certain steps, an attacker can bypass these restrictions and inject malicious code.

CVSS3: 6.1
0%
Низкий
около 2 лет назад
debian логотип
CVE-2023-38306

An issue was discovered in Webmin 2.021. A Cross-site Scripting (XSS) ...

CVSS3: 6.1
0%
Низкий
около 2 лет назад
github логотип
GHSA-393c-4g2g-74rm

An issue was discovered in Webmin 2.021. A Cross-site Scripting (XSS) Bypass vulnerability was discovered in the file upload functionality. Normally, the application restricts the upload of certain file types such as .svg, .php, etc., and displays an error message if a prohibited file type is detected. However, by following certain steps, an attacker can bypass these restrictions and inject malicious code.

CVSS3: 6.1
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2023-04472

Уязвимость панели управления хостингом Webmin, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)

CVSS3: 6.1
0%
Низкий
около 2 лет назад
redos логотип
ROS-20240918-04

Множественные уязвимости webmin

CVSS3: 8.8
12 месяцев назад

Уязвимостей на страницу