Vulnerabilities > Webmin > Usermin > 1.3

DATE CVE VULNERABILITY TITLE RISK
2010-01-05 CVE-2009-4568 Cross-Site Scripting vulnerability in Webmin Usermin and Webmin
Cross-site scripting (XSS) vulnerability in Webmin before 1.500 and Usermin before 1.430 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
webmin CWE-79
4.3
2008-02-12 CVE-2008-0720 Cross-Site Scripting vulnerability in Webmin Usermin and Webmin
Cross-site scripting (XSS) vulnerability in Webmin 1.370 and 1.390 and Usermin 1.300 and 1.320 allows remote attackers to inject arbitrary web script or HTML via the search parameter to webmin_search.cgi (aka the search section), and possibly other components accessed through a "search box" or "open file box." NOTE: some of these details are obtained from third party information.
network
webmin CWE-79
4.3