Home / os / win10

Webmin 1.962 Remote Command Execution

Posted on 22 December 2020

This Metasploit module exploits an arbitrary command execution vulnerability in Webmin 1.962 and lower versions. Any user authorized to the Package Updates module can execute arbitrary commands with root privileges. It emerged by circumventing the measure taken for CVE-2019-12840.

 

TOP