Authenticated XXE Vulnerability in Webmin's xmlrpc.cgi

Authenticated XXE Vulnerability in Webmin's xmlrpc.cgi

CVE-2019-15641 · MEDIUM Severity

AV:N/AC:L/AU:S/C:C/I:N/A:N

xmlrpc.cgi in Webmin through 1.930 allows authenticated XXE attacks. By default, only root, admin, and sysadm can access xmlrpc.cgi.

Learn more about our Web App Pen Testing.