NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
75724 | CVE-1999-1074 | Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could allow remote attackers to gain privileges via brute force password cracking. | 2 | 7.5 | High | 2017-01-05 | 2008-09-09 | View | |
44662 | CVE-2012-2981 | Webmin 1.590 and earlier allows remote authenticated users to execute arbitrary Perl code via a crafted file associated with the type (aka monitor type name) parameter. | 2 | 6 | Medium | 2017-01-19 | 2013-05-29 | View | |
80625 | CVE-2002-1672 | Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
78509 | CVE-2001-1074 | Webmin 0.84 and earlier does not properly clear the HTTP_AUTHORIZATION environment variable when the web server is restarted, which makes authentication information available to all CGI programs and allows local users to gain privileges. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View | |
77700 | CVE-2001-0222 | webmin 0.84 and earlier allows local users to overwrite and create arbitrary files via a symlink attack. | 2 | 1.2 | Low | 2017-01-05 | 2011-03-07 | View |
Page 276 of 17672, showing 5 records out of 88360 total, starting on record 1376, ending on 1380