Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-41160


A Stored Cross-Site Scripting (XSS) vulnerability in the SSH configuration tab in Usermin 2.001 allows remote attackers to inject arbitrary web script or HTML via the key name field while adding an authorized key.


Published

2023-09-14T21:15:10.750

Last Modified

2024-11-21T08:20:41.823

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.4 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application webmin usermin 2.001 Yes

References