CVE-2015-1377

Webmin < 1.720 - Arbitrary File Read via Symlink Attack in Read Mail Module

Title source: llm
STIX 2.1

Description

The Read Mail module in Webmin 1.720 allows local users to read arbitrary files via a symlink attack on an unspecified file.

References (3)

Core 3
Core References
Vendor Advisory x_refsource_confirm
http://www.webmin.com/security.html
Vendor Advisory x_refsource_confirm
http://www.webmin.com/changes.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/62157

Scores

EPSS 0.0037
EPSS Percentile 29.1%

Details

CWE
CWE-59
Status published
Products (1)
webmin/webmin < 1.720
Published Feb 10, 2015
Tracked Since Feb 18, 2026