Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature
| CVE-2021-31761 |
Description :
Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature
Tested Version :
Webmin 1973 ( GitHub's latest version 07/03/2021 )
Attack Type:
Remote
Impact :
Remote Command Execution
eXploit's C0de POC :
YouTube POC :
yo