Home/CVEs/CVE-2019-15107/

CVE-2019-15107 - Webmin Command Injection Vulnerability

Project:Webmin

Product:Webmin

Date Added:2022-03-25Due Date:2022-04-15

Vulnerability Name

Webmin Command Injection Vulnerability

Description

An issue was discovered in Webmin. The parameter old in password_change.cgi contains a command injection vulnerability.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2019-15107