LWN.net Logo

usermin - unauthorized access

Package(s):usermin, webmin CVE #(s):
Created:February 24, 2003 Updated:February 27, 2003
Description: - From announcement:

"Due to a remotely exploitable security hole being discovered that effects all previous Webmin releases, version 1.070 is now available for download from http://www.webmin.com/ and mirror sites. This problem was reported by Cintia M. Imanishi, but fortunately there have been no known malicious exploits of it yet. However, all users should upgrade to 1.070 as soon as possible."

"Also available is Usermin 1.000 which fixes the exact same security hole. It includes the same File Manager features, as well as support for IMAP folders and an IMAP inbox in the Read Mail module."

Read this alert for the details.

Alerts:
Mandrake MDKSA-2003:025 2003-02-26
EnGarde ESA-20030225-006 2003-02-25
Gentoo 200302-14 2003-02-24
Gentoo 200302-12 2003-02-22

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds