Stored Cross-Site Scripting Vulnerability in Usermin by Webmin
CVE-2023-41153
5.4MEDIUM
What is CVE-2023-41153?
A vulnerability in the SSH configuration tab of Usermin 2.001 enables remote attackers to perform Stored Cross-Site Scripting (XSS) attacks. By manipulating the host options, attackers can inject arbitrary web scripts or HTML, potentially compromising user sessions and allowing for unauthorized actions. This susceptibility highlights the importance of input validation and ensuring secure coding practices to protect against XSS threats.