6.8
CVSSv2

CVE-2021-31760

Published: 25/04/2021 Updated: 28/04/2021
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 606
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Webmin 1.973 is affected by Cross Site Request Forgery (CSRF) to achieve Remote Command Execution (RCE) through Webmin's running process feature.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

Github Repositories

Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

| CVE-2021-31760 | Description : Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature Tested Version : Webmin 1973 ( GitHub's latest version 07/03/2021 ) Attack Type: Remote Impact : Remote Command Execution eXploit's C0de POC : YouTube POC : youtu

Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

| CVE-2021-31760 | Description : Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature Tested Version : Webmin 1973 ( GitHub's latest version 07/03/2021 ) Attack Type: Remote Impact : Remote Command Execution eXploit's C0de POC : YouTube POC : youtu