.. / CVE-2022-0824

Exploit for Webmin <1.990 - Improper Access Control (CVE-2022-0824)

Description:

Webmin before 1.990 is susceptible to improper access control in GitHub repository webmin/webmin. This in turn can lead to remote code execution, by which an attacker can execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system without entering necessary credentials.

Nuclei Template

View the template here CVE-2022-0824.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-0824.yaml
Copy

References:

https://github.com/faisalfs10x/Webmin-CVE-2022-0824-revshell/blob/main/Webmin-revshell.py
https://huntr.dev/bounties/d0049a96-de90-4b1a-9111-94de1044f295
https://nvd.nist.gov/vuln/detail/CVE-2022-0824
https://github.com/webmin/webmin/commit/39ea464f0c40b325decd6a5bfb7833fa4a142e38
https://github.com/nomi-sec/PoC-in-GitHub