Webmin versions 1.270 and below are susceptible to a directory traversal attack.
fa59e3fa0d86976493acec052efc7ea7a7449bd1611072cdf0f932ece26afa50
SNS Advisory 83 - A vulnerability that could result in session ID spoofing exists in miniserv.pl, which is a webserver program that is utilized by Webmin and Usermin. Webmin version 1.220 and Usermin version 1.150 are affected.
4f1c462a6d055766252844ffc3c1e34389177f4019beef3335aa8c2152e47e35
SNS Advisory 79 - Microsoft Internet Explorer contains a vulnerability that could cause a Cookie to be overwritten under certain conditions. Tested against Microsoft Internet Explorer 6.0 Service Pack 1.
f8e8e031b29edfbd8f4c1c957c970be213c8034091cdd7faf4b2a53d38a67228
SNS Advisory 77 - A vulnerability in Usermin's Web mail function could result in arbitrary command execution upon viewing a specially crafted HTML mail. Affected Versions: Usermin 1.070, 1.080.
e89bdbe5b952119110222b898006b2ef7e8f0aafe483e152787abb724d0ec24b
Webmin version 1.140, a web-based system administration tool for Unix, has a vulnerability that allow users to gain read access to the configuration of a module without authentication.
832e4e216b40d2258786e8d36c494b2dff9a4983cb87e9a3c826f970fdbdccea