Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Webmin — Vulnerabilities & Security Advisories 17

Browse all 17 CVE security advisories affecting Webmin. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Webmin is a web-based server management interface for Unix-like systems, primarily used for system administration and configuration. Historically, it has been vulnerable to remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from insufficient input validation and insecure default settings. The software's broad system access makes it a high-value target. While no major public incidents have been widely documented, its persistent CVE count indicates ongoing security challenges. Administrators should implement network segmentation, regular updates, and strict access controls to mitigate risks when deploying this tool.

Top products by Webmin: Webmin webmin/webmin
CVE ID Title CVSS Severity Published
CVE-2026-49243 Webmin: Reflected XSS in the Configuration module — webmin CWE-79 5.1 Medium 2026-09-29
CVE-2026-42210 Webmin 2FA requirement bypass — webmin CWE-287 - - 2026-07-20
CVE-2026-56020 Webmin HTTP header authentication bypass — Webmin CWE-290 8.1 High 2026-06-18
CVE-2026-56021 Webmin information disclosure via regex pattern — Webmin CWE-185 5.3 Medium 2026-06-18
CVE-2026-56022 Webmin MFA bypass — Webmin CWE-308 5.3 Medium 2026-06-18
CVE-2026-49103 Webmin 安全漏洞 — Webmin CWE-24 - - 2026-05-27
CVE-2026-49102 Webmin 跨站脚本漏洞 — Webmin CWE-79 6.1 Medium 2026-05-27
CVE-2026-22678 Webmin < 2.641 Stored XSS via System and Server Status — Webmin CWE-79 5.4 Medium 2026-05-21
CVE-2025-67738 Webmin 操作系统命令注入漏洞 — Webmin CWE-78 8.5 High 2025-12-11
CVE-2024-12828 Webmin CGI Command Injection Remote Code Execution Vulnerability — Webmin CWE-78 8.8 - 2024-12-30
CVE-2024-36453 Webmin、Usermin 安全漏洞 — Webmin 6.1AI Medium AI 2024-07-10
CVE-2024-36452 Webmin 安全漏洞 — Webmin 8.8AI High AI 2024-07-10
CVE-2024-36451 Webmin 安全漏洞 — Webmin 9.4AI Critical AI 2024-07-10
CVE-2024-36450 Webmin 安全漏洞 — Webmin 6.1AI Medium AI 2024-07-10
CVE-2022-0829 Improper Authorization in webmin/webmin — webmin/webmin CWE-285 8.3 - 2022-03-02
CVE-2022-0824 Improper Access Control to Remote Code Execution in webmin/webmin — webmin/webmin CWE-284 8.8 - 2022-03-02
CVE-2017-2106 Webmin 跨站脚本漏洞 — Webmin 6.1 - 2017-04-28

This page lists every published CVE security advisory associated with Webmin. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.