Unrated severityNVD Advisory· Published Mar 16, 2014· Updated May 6, 2026
CVE-2014-0339
CVE-2014-0339
Description
Cross-site scripting (XSS) vulnerability in view.cgi in Webmin before 1.680 allows remote attackers to inject arbitrary web script or HTML via the search parameter.
Affected products
8cpe:2.3:a:webmin:webmin:*:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:webmin:webmin:*:*:*:*:*:*:*:*range: <=1.670
- cpe:2.3:a:webmin:webmin:1.600:*:*:*:*:*:*:*
- cpe:2.3:a:webmin:webmin:1.610:*:*:*:*:*:*:*
- cpe:2.3:a:webmin:webmin:1.620:*:*:*:*:*:*:*
- cpe:2.3:a:webmin:webmin:1.630:*:*:*:*:*:*:*
- cpe:2.3:a:webmin:webmin:1.640:*:*:*:*:*:*:*
- cpe:2.3:a:webmin:webmin:1.650:*:*:*:*:*:*:*
- cpe:2.3:a:webmin:webmin:1.660:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- seclists.org/fulldisclosure/2014/Mar/274nvdExploit
- www.securityfocus.com/bid/66248nvdExploit
- www.kb.cert.org/vuls/id/381692nvdUS Government Resource
- www-01.ibm.com/support/docview.wssnvd
- www.webmin.com/changes.htmlnvd
News mentions
0No linked articles in our index yet.