A Stored Cross-Site Scripting (XSS) vulnerability in the mail forwarding and replies tab in Webmin and Usermin 2.000 allows remote attackers to inject arbitrary web script or HTML via the forward to field while creating a mail forwarding rule.
References
Link | Resource |
---|---|
https://github.com/shindeanik/Usermin-2.000/blob/main/CVE-2023-41155 | Third Party Advisory |
https://webmin.com/tags/webmin-changelog/ | Release Notes |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-09-13T00:00:00
Updated: 2023-09-13T21:41:29.263678
Reserved: 2023-08-24T00:00:00
Link: CVE-2023-41155
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-09-13T22:15:08.747
Modified: 2023-09-18T14:12:15.923
Link: CVE-2023-41155
JSON object: View
Redhat Information
No data.
CWE