High severity7.8OSV Advisory· Published Mar 7, 2019· Updated Jun 17, 2026
CVE-2019-9624
CVE-2019-9624
Description
Webmin 1.900 allows remote attackers to execute arbitrary code by leveraging the "Java file manager" and "Upload and Download" privileges to upload a crafted .cgi file via the /updown/upload.cgi URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- pentest.com.tr/exploits/Webmin-1900-Remote-Command-Execution.htmlnvdExploitThird Party Advisory
- www.exploit-db.com/exploits/46201nvdExploitThird Party AdvisoryVDB Entry
- www.rapid7.com/db/modules/exploit/unix/webapp/webmin_upload_execnvdThird Party Advisory
News mentions
0No linked articles in our index yet.