Stored Cross-Site Scripting in Webmin by Virtualmin
CVE-2023-38307
5.4MEDIUM
What is CVE-2023-38307?
A vulnerability has been identified in Webmin 2.021, which allows an authenticated user to exploit the Users and Groups functionality by inserting a malicious XSS payload into the real name field when adding a new user. This flaw can lead to the execution of arbitrary scripts in the context of the user’s browser, potentially compromising sensitive information. Users are advised to update to the latest version to mitigate this security risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
