CVE-2015-1377
Webmin < 1.720 - Arbitrary File Read via Symlink Attack in Read Mail Module
Title source: llmDescription
The Read Mail module in Webmin 1.720 allows local users to read arbitrary files via a symlink attack on an unspecified file.
References (3)
Core 3
Core References
Vendor Advisory x_refsource_confirm
http://www.webmin.com/security.html
Vendor Advisory x_refsource_confirm
http://www.webmin.com/changes.html
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/62157
Scores
EPSS
0.0037
EPSS Percentile
29.1%
Details
CWE
CWE-59
Status
published
Products (1)
webmin/webmin
< 1.720
Published
Feb 10, 2015
Tracked Since
Feb 18, 2026