Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2011-1937

EPSS 0.66% · P71
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2011-1937

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Webmin 1.540 and earlier allows local users to inject arbitrary web script or HTML via a chfn command that changes the real (aka Full Name) field, related to useradmin/index.cgi and useradmin/user-lib.pl.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Webmin跨站脚本攻击漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Webmin是澳大利亚软件开发者Jamie Cameron和Webmin社区共同开发的一套基于Web的用于类Unix操作系统中的系统管理工具。 Webmin 1.540及之前版本中存在跨站脚本攻击漏洞。本地用户可以借助能够更改real字段(Full Name字段)的chfn命令,注入任意web脚本或者HTML。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2011-1937

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2011-1937

登录查看更多情报信息。

Same Patch Batch · n/a · 2011-05-31 · 28 CVEs total

CVE-2011-1486Red Hat libvirt libvirtd拒绝服务漏洞
CVE-2011-2215Walrus_Digit WalRack未明漏洞
CVE-2011-22147T Interactive Graphical SCADA System ODBC远程内存破坏漏洞
CVE-2011-1945OpenSSL ECC子系统加密问题漏洞
CVE-2011-1938PHP ext/sockets/sockets.c socket_connect函数栈缓冲区溢出漏洞
CVE-2011-1925Wouter_Verhelst Network Block Device拒绝服务漏洞
CVE-2011-1922Nlnetlabs Unbound DNS解析器远程拒绝服务漏洞
CVE-2011-1910ISC BIND 9 Negative Caching RRSIG RRsets off-by-one错误漏洞
CVE-2011-1651Cisco IOS XR SPA接口处理器远程拒绝服务漏洞
CVE-2011-1649Cisco Content Delivery System Internet Streamer URL处理远程拒绝服务漏洞
CVE-2011-1647Cisco RVS4000和WRVS4400N Web管理界面信息泄露漏洞
CVE-2011-1646Cisco RVS4000和WRVS4400N Web管理界面远程命令注入漏洞
CVE-2011-1645Cisco RVS4000和WRVS4400N Web管理界面信息泄露漏洞
CVE-2011-1512IBM Lotus Notes Autonomy KeyView .xls附件处理多个堆缓冲区溢出漏洞
CVE-2011-0546Symantec Backup Exec非法访问漏洞
CVE-2011-1485Red Hat PolicyKit pkexec功能和polkitd守护进程竞争条件漏洞
CVE-2011-1329Walrus_Digit WalRack文件扩展处理任意文件上传漏洞
CVE-2011-1218IBM Lotus Notes Autonomy KeyView .zip附件处理缓冲区溢出漏洞
CVE-2011-1217IBM Lotus Notes Autonomy KeyView .prz附件处理缓冲区溢出漏洞
CVE-2011-1216IBM Lotus Notes Autonomy KeyView Applix电子表格附件处理栈缓冲区溢出漏洞

Showing top 20 of 28 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2011-1937

No comments yet


Leave a comment