Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Webmin / Usermin Remote PAM Authentication Bypass Vulnerability

Webmin and Usermin are susceptible to a remote PAM authentication bypass vulnerability. This issue is present in the 'miniserv.pl' Web server that is bundled with these applications.

Due to insufficient input validation, shell metacharacters may be employed to bypass the authentication mechanism.

Due to the nature of these applications, full system compromise is very likely after gaining access.







 

Privacy Statement
Copyright 2008, SecurityFocus