SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Webmin switch_skill.cgi CRLF Injection

Category: WEB-ATTACKS      

This vulnerability allows remote attackers to escalate privileges on affected installations of Webmin. Authentication is required to exploit this vulnerability. The specific flaw exists within the handling of CGI requests. The issue results from the lack of proper neutralization of CRLF sequences. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root.


Relevant Information