Known Vulnerabilities for Webmin by Webmin
Listed below are 10 of the newest known vulnerabilities associated with "Webmin" by "Webmin".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49103 json | Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. This occ... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-49102 json | Webmin before 2.640 allows mailboxes/detach.cgi XSS via an SVG document attachment that is viewed in the mailboxes component,... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-22678 json | Webmin before 2.641 contains a stored cross-site scripting vulnerability in the email template description field of the Syste... | Not Provided | 2026-05-21 | 2026-05-25 |
| CVE-2023-43309 json | There is a stored cross-site scripting (XSS) vulnerability in Webmin 2.002 and below via the Cluster Cron Job tab Input field... | 4.8 - MEDIUM | 2023-09-21 | 2023-09-22 |
| CVE-2023-41163 json | A Reflected Cross-site scripting (XSS) vulnerability in the file manager tab in Usermin 2.000 allows remote attackers to inje... | 6.1 - MEDIUM | 2023-08-30 | 2023-09-05 |
| CVE-2023-41155 json | A Stored Cross-Site Scripting (XSS) vulnerability in the mail forwarding and replies tab in Webmin and Usermin 2.000 allows r... | 5.4 - MEDIUM | 2023-09-13 | 2023-09-18 |
| CVE-2023-40986 json | A stored cross-site scripting (XSS) vulnerability in the Usermin Configuration function of Webmin v2.100 allows attackers to ... | 5.4 - MEDIUM | 2023-09-15 | 2023-09-20 |
| CVE-2023-40985 json | An issue was discovered in Webmin 2.100. The File Manager functionality allows an attacker to exploit a Cross-Site Scripting ... | 5.4 - MEDIUM | 2023-09-15 | 2023-09-20 |
| CVE-2023-40984 json | A reflected cross-site scripting (XSS) vulnerability in the File Manager function of Webmin v2.100 allows attackers to execut... | 5.4 - MEDIUM | 2023-09-15 | 2023-09-20 |
| CVE-2023-40983 json | A reflected cross-site scripting (XSS) vulnerability in the File Manager function of Webmin v2.100 allows attackers to execut... | 6.1 - MEDIUM | 2023-09-15 | 2023-09-19 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Webmin | Webmin | 1.962 | |||
| Application | Webmin | Webmin | 1.941 | |||
| Application | Webmin | Webmin | 1.930 | |||
| Application | Webmin | Webmin | 1.920 | |||
| Application | Webmin | Webmin | 1.910 | |||
| Application | Webmin | Webmin | 1.900 | |||
| Application | Webmin | Webmin | 1.890 | |||
| Application | Webmin | Webmin | 1.881 | |||
| Application | Webmin | Webmin | 1.880 | |||
| Application | Webmin | Webmin | 1.870 | |||
| Application | Webmin | Webmin | 1.860 | |||
| Application | Webmin | Webmin | 1.850 | |||
| Application | Webmin | Webmin | 1.840 | |||
| Application | Webmin | Webmin | 1.831 | |||
| Application | Webmin | Webmin | 1.830 | |||
| Application | Webmin | Webmin | 1.820 | |||
| Application | Webmin | Webmin | 1.810 | |||
| Application | Webmin | Webmin | 1.801 | |||
| Application | Webmin | Webmin | 1.791 | |||
| Application | Webmin | Webmin | 1.780 |