Back

CVE-2002-0756

Cross-site scripting vulnerability in the authentication page for (1) Webmin 0.96 and (2) Usermin 0.90 allows remote attackers to insert script into an error page and possibly steal cookies.

Published: Aug 12, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (10)

Vendor Product Version
usermin usermin 0.7
usermin usermin 0.8
usermin usermin 0.9
webmin webmin 0.91
webmin webmin 0.92
webmin webmin 0.92.1
webmin webmin 0.93
webmin webmin 0.94
webmin webmin 0.95
webmin webmin 0.96

GitHub Security Advisory GHSA-gr54-6vrh-x585

Cross-site scripting vulnerability in the authentication page for (1) Webmin 0.96 and (2) Usermin...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.68%

Top 25% most likely to be exploited

Threat Score 30.5 / 100

Data Sources

NVD EPSS GitHub