A Stored Cross-Site Scripting (XSS) vulnerability in the filter and forward mail tab in Usermin 2.001 allows remote attackers to inject arbitrary web script or HTML via the save to new folder named field while creating a new filter.
References
Link | Resource |
---|---|
https://github.com/shindeanik/Usermin-2.001/blob/main/CVE-2023-41156 | Third Party Advisory |
https://webmin.com/tags/webmin-changelog/ | Release Notes |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-09-14T00:00:00
Updated: 2023-09-14T20:46:17.664013
Reserved: 2023-08-24T00:00:00
Link: CVE-2023-41156
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-09-14T21:15:10.630
Modified: 2023-09-19T16:28:17.837
Link: CVE-2023-41156
JSON object: View
Redhat Information
No data.
CWE