CVE-2015-2079

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/04/2025
Last modified:
14/05/2025

Description

Usermin 0.980 through 1.x before 1.660 allows uconfig_save.cgi sig_file_free remote code execution because it uses the two argument (not three argument) form of Perl open.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:webmin:usermin:*:*:*:*:*:*:*:* 0.980 (including) 1.660 (excluding)