CVE-2020-35606 EXPLOIT
8.8
HIGH · CVSS 3.1 · EPSS 28% (pctl 98)
Patch early
A public exploit exists.
Description
Arbitrary command execution can occur in Webmin through 1.962. Any user authorized for the Package Updates module can execute arbitrary commands with root privileges via vectors involving %0A and %0C. NOTE: this issue exists because of an incomplete fix for CVE-2019-12840.
Scoring
| CVSS | 8.8 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 28.05% — more likely to be exploited than 98% of all CVEs |
| Weakness | CWE-78 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2020-12-21 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| webmin | webmin |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Webmin 1.962 - 'Package Updates' Escape Bypass RCE (Metasploit) | 2020-12-22 |
References
- http://packetstormsecurity.com/files/160676/Webmin-1.962-Remote-Command-Execution.html
- https://www.exploit-db.com/exploits/49318
- https://www.pentest.com.tr/exploits/Webmin-1962-PU-Escape-Bypass-Remote-Command-Execution.html
- https://www.webmin.com/download.html
- http://packetstormsecurity.com/files/160676/Webmin-1.962-Remote-Command-Execution.html
- https://www.exploit-db.com/exploits/49318
- https://www.pentest.com.tr/exploits/Webmin-1962-PU-Escape-Bypass-Remote-Command-Execution.html
- https://www.webmin.com/download.html
→ the Explorer · watch your stack · NVD