CVE-2002-0757 Information
Feb 14, 2021
cve
Description
(1) Webmin 0.96 and (2) Usermin 0.90 with password timeouts enabled allow local and possibly remote attackers to bypass authentication and gain privileges via certain control characters in the authentication information which can force Webmin or Usermin to accept arbitrary username/session ID combinations.
Reference
http://online.securityfocus.com/archive/1/271466 http://www.iss.net/security_center/static/9037.php http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-033.php http://www.securityfocus.com/bid/4700
Share on: