Forum

CVE-2022-35132 - Usermin

Zitat

Usermin through 1.850 allows a remote authenticated user to execute OS commands via command injection in a filename for the GPG module.

References
https://github.com/ly1g3/webmin-usermin-vulnerabilities
https://webmin.com/uchanges.html