Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Webmin 1.540 and earlier allows local users to inject arbitrary web script or HTML via a chfn command that changes the real (aka Full Name) field, related to useradmin/index.cgi and useradmin/user-lib.pl.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Webmin跨站脚本攻击漏洞
Vulnerability Description
Webmin是澳大利亚软件开发者Jamie Cameron和Webmin社区共同开发的一套基于Web的用于类Unix操作系统中的系统管理工具。 Webmin 1.540及之前版本中存在跨站脚本攻击漏洞。本地用户可以借助能够更改real字段(Full Name字段)的chfn命令,注入任意web脚本或者HTML。
CVSS Information
N/A
Vulnerability Type
N/A