logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-38308

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-38308

Description:
An issue was discovered in Webmin 2.021. A Cross-Site Scripting (XSS) vulnerability was discovered in the HTTP Tunnel functionality when handling third-party domain URLs. By providing a crafted URL from a third-party domain, an attacker can inject malicious code. leading to the execution of arbitrary JavaScript code within the context of the victim's browser.
Last updated date:
08/04/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
08/04/2023
Reference url to background

https://github.com/jaysharma786/Webmin-2.021/blob/main/CVE-2023-38308

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy