Unintended Operations May Be Performed Due to Cross-Site Request Forgery Vulnerability in Webmin's AJAXTerm Module
CVE-2024-36452

Currently unrated

Key Information:

Vendor

Webmin

Status
Vendor
CVE Published:
10 July 2024

What is CVE-2024-36452?

Cross-site request forgery vulnerability exists in ajaxterm module of Webmin versions prior to 2.003. If this vulnerability is exploited, unintended operations may be performed when a user views a malicious page while logged in. As a result, data within a system may be referred, a webpage may be altered, or a server may be permanently halted.

Affected Version(s)

Webmin versions prior to 2.003

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.