yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2022-0824
Component Overview
Vulnerability Overview
Name
CVE-2022-0824
Source
NVD (
link
)
Debian (
link
)
Description
Improper Access Control to Remote Code Execution in GitHub repository webmin/webmin prior to 1.990.
CWEs
CWE-284
CWE-863
Published Date
Mar 2, 2022
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://packetstormsecurity.com/files/166240/Webmin-1.984-Remote-Code-Execution.html
Exploit
http://packetstormsecurity.com/files/169700/Webmin-1.984-File-Manager-Remote-Code-Execution.html
Exploit
https://github.com/webmin/webmin/commit/39ea464f0c40b325decd6a5bfb7833fa4a142e38
Patch
https://huntr.dev/bounties/d0049a96-de90-4b1a-9111-94de1044f295
Exploit
https://notes.netbytesec.com/2022/03/webmin-broken-access-control-to-post-auth-rce.html
Exploit
http://packetstormsecurity.com/files/166240/Webmin-1.984-Remote-Code-Execution.html
Exploit
http://packetstormsecurity.com/files/169700/Webmin-1.984-File-Manager-Remote-Code-Execution.html
Exploit
https://github.com/webmin/webmin/commit/39ea464f0c40b325decd6a5bfb7833fa4a142e38
Patch
https://huntr.dev/bounties/d0049a96-de90-4b1a-9111-94de1044f295
Exploit
https://notes.netbytesec.com/2022/03/webmin-broken-access-control-to-post-auth-rce.html
Exploit
Analysis
#
Affected Component
Analysis
webmin
Exploitable
Vulnerability Ratings
#
8.8
CVSSv31
8.3
other
9
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
webmin
yocto
master
2.641
Not Affected
webmin
yocto
scarthgap
1.850
Exploitable