MDVSA-2014:062 -- Mandriva webminID: oval:org.secpod.oval:def:1300289 | Date: (C)2014-04-14 (M)2022-10-10 |
Class: PATCH | Family: unix |
Multiple vulnerabilities was discovered and corrected in webmin: Multiple XSS, CSRF, and arbitrary code execution vulnerabilities that impact Webmin versions prior to 1.620 . The 1.680 version fixed security issues that could be exploited by un-trusted Webmin users in the PHP Configuration and Webalizer modules. The Authen::Libwrap perl module used by Webmin is also being provided. The updated packages have been upgraded to the 1.680 version which is not vulnerable to these issues.
Platform: |
Mandriva Enterprise Server 5.2 |