CVE Vulnerabilities

CVE-2002-0756

Published: Aug 12, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cross-site scripting vulnerability in the authentication page for (1) Webmin 0.96 and (2) Usermin 0.90 allows remote attackers to insert script into an error page and possibly steal cookies.

Affected Software

NameVendorStart VersionEnd Version
UserminUsermin0.7 (including)0.7 (including)
UserminUsermin0.8 (including)0.8 (including)
UserminUsermin0.9 (including)0.9 (including)
WebminWebmin0.91 (including)0.91 (including)
WebminWebmin0.92 (including)0.92 (including)
WebminWebmin0.92.1 (including)0.92.1 (including)
WebminWebmin0.93 (including)0.93 (including)
WebminWebmin0.94 (including)0.94 (including)
WebminWebmin0.95 (including)0.95 (including)
WebminWebmin0.96 (including)0.96 (including)

References