← Back

CVE-2014-3884

nvd nist
Published: Jul 20, 2014Modified: May 6, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in Usermin before 1.600 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this might overlap CVE-2014-3924.

Affected (76)

Products: Webmin: Usermin
1 product
Usermin
Configuration A
76 vulnerable
Vulnerable SoftwareAffected Versions
Webmin
Up to 1.590
Version 0.4
Version 0.5
Version 0.6
Version 0.7
Version 0.80
Version 0.90
Version 0.910
Version 0.929
Version 0.930
Version 0.940
Version 0.950
Version 0.960
Version 0.970
Version 0.980
Version 0.990
Version 1.000
Version 1.010
Version 1.020
Version 1.030
Version 1.040
Version 1.050
Version 1.051
Version 1.060
Version 1.070
Version 1.080
Version 1.090
Version 1.100
Version 1.110
Version 1.120
Version 1.130
Version 1.140
Version 1.150
Version 1.160
Version 1.170
Version 1.180
Version 1.190
Version 1.200
Version 1.210
Version 1.220
Version 1.230
Version 1.240
Version 1.250
Version 1.260
Version 1.270
Version 1.280
Version 1.290
Version 1.300
Version 1.310
Version 1.320
Version 1.330
Version 1.340
Version 1.350
Version 1.360
Version 1.370
Version 1.380
Version 1.390
Version 1.400
Version 1.410
Version 1.420
Version 1.430
Version 1.440
Version 1.450
Version 1.460
Version 1.470
Version 1.480
Version 1.490
Version 1.500
Version 1.510
Version 1.520
Version 1.530
Version 1.540
Version 1.550
Version 1.560
Version 1.570
Version 1.580

References (4)

Source: vultures@jpcert.or.jp
Vendor Advisory
Source: vultures@jpcert.or.jp
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.