Loading
Cross-site scripting vulnerability exists in sysinfo.cgi of Webmin versions prior to 1.910. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product. As a result, a session ID may be obtained, a webpage may be altered, or a server may be halted.
Use CWE-79, Webmin vendor hub and Webmin product page to widen CVE-2024-36450 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-12828, CVE-2024-36451 and CVE-2024-45692 for nearby disclosures in the same product family.