Back
CVE-2002-0756
Cross-site scripting vulnerability in the authentication page for (1) Webmin 0.96 and (2) Usermin 0.90 allows remote attackers to insert script into an error page and possibly steal cookies.
Published: Aug 12, 2002
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (10)
| Vendor | Product | Version |
|---|---|---|
| usermin | usermin | 0.7 |
| usermin | usermin | 0.8 |
| usermin | usermin | 0.9 |
| webmin | webmin | 0.91 |
| webmin | webmin | 0.92 |
| webmin | webmin | 0.92.1 |
| webmin | webmin | 0.93 |
| webmin | webmin | 0.94 |
| webmin | webmin | 0.95 |
| webmin | webmin | 0.96 |
GitHub Security Advisory GHSA-gr54-6vrh-x585
Cross-site scripting vulnerability in the authentication page for (1) Webmin 0.96 and (2) Usermin...
References (6)
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0040.html Patch, Vendor Advisory
- http://www.iss.net/security_center/static/9036.php Patch, Vendor Advisory
- http://www.securityfocus.com/bid/4694 Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-05/0040.html Patch, Vendor Advisory
- http://www.iss.net/security_center/static/9036.php Patch, Vendor Advisory
- http://www.securityfocus.com/bid/4694 Patch, Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.68%
Top 25% most likely to be exploited
Threat Score
30.5 / 100
Data Sources
NVD
EPSS
GitHub