← Vulnerability feed

Vulnerability record · CVE-2003-0101 · published 3 March 2003

CVE-2003-0101: Engardelinux guardian digital webtool vulnerability

EEngardelinux · Guardian Digital Webtool

miniserv.pl in (1) Webmin before 1.070 and (2) Usermin before 1.000 does not properly handle metacharacters such as line feeds and carriage returns (CRLF) in Base-64 encoded strings during Basic authentication, which allows remote attackers to spoof a session ID and gain root privileges.

10.0 CVSS 2.0 High EPSS 15% · top 3.3%
10.0CVSS 2.0 base score
15%EPSS exploitation probability, 30 days
NoNot in CISA KEV
3Affected product versions listed by NVD
34References
16 Jun 2026Last modified by NVD

Description

miniserv.pl in (1) Webmin before 1.070 and (2) Usermin before 1.000 does not properly handle metacharacters such as line feeds and carriage returns (CRLF) in Base-64 encoded strings during Basic authentication, which allows remote attackers to spoof a session ID and gain root privileges.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
ftp://patches.sgi.com/support/free/security/advisories/20030602-01-I
http://archives.neohapsis.com/archives/hp/2003-q1/0063.html
http://archives.neohapsis.com/archives/linux/engarde/2003-q1/0008.html
http://marc.info/?l=bugtraq&m=104610245624895&w=2
http://marc.info/?l=bugtraq&m=104610300325629&w=2
http://marc.info/?l=bugtraq&m=104610336226274&w=2
http://marc.info/?l=webmin-announce&m=104587858408101&w=2
http://secunia.com/advisories/8115
http://secunia.com/advisories/8163
http://www.ciac.org/ciac/bulletins/n-058.shtml
http://www.debian.org/security/2003/dsa-319
http://www.iss.net/security_center/static/11390.php Vendor Advisory
http://www.lac.co.jp/security/english/snsadv_e/62_e.html
http://www.linuxsecurity.com/advisories/gentoo_advisory-2886.html
http://www.mandriva.com/security/advisories?name=MDKSA-2003:025
http://www.securityfocus.com/bid/6915
http://www.securitytracker.com/id?1006160
ftp://patches.sgi.com/support/free/security/advisories/20030602-01-I
http://archives.neohapsis.com/archives/hp/2003-q1/0063.html
http://archives.neohapsis.com/archives/linux/engarde/2003-q1/0008.html
http://marc.info/?l=bugtraq&m=104610245624895&w=2
http://marc.info/?l=bugtraq&m=104610300325629&w=2
http://marc.info/?l=bugtraq&m=104610336226274&w=2
http://marc.info/?l=webmin-announce&m=104587858408101&w=2
http://secunia.com/advisories/8115
http://secunia.com/advisories/8163
http://www.ciac.org/ciac/bulletins/n-058.shtml
http://www.debian.org/security/2003/dsa-319
http://www.iss.net/security_center/static/11390.php Vendor Advisory
http://www.lac.co.jp/security/english/snsadv_e/62_e.html
http://www.linuxsecurity.com/advisories/gentoo_advisory-2886.html
http://www.mandriva.com/security/advisories?name=MDKSA-2003:025
http://www.securityfocus.com/bid/6915
http://www.securitytracker.com/id?1006160

Track CVE-2003-0101 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2019-15107Webmin password_change.cgi command injectionWebmin through 1.920 passes the 'old' parameter in password_change.cgi into a shell command without sanitization, allowing OS command injection. The …KEVEPSS 100%analysed10.0CVE-2005-1177Usermin vulnerabilityUnknown vulnerability in (1) Webmin and (2) Usermin before 1.200 causes Webmin to change permissions and ownership of configuration files, with unkno…EPSS 1.8%10.0CVE-2002-2201Webmin vulnerabilityThe Printer Administration module for Webmin 0.990 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the …EPSS 3.3%10.0CVE-2001-1196Webmin vulnerabilityDirectory traversal vulnerability in edit_action.cgi of Webmin Directory 0.91 allows attackers to gain privileges via a '..' (dot dot) in the argumen…EPSS 9.8%9.8CVE-2022-36446Webmin apt-lib.pl command injection via unescaped UI commandWebmin before 1.997 fails to HTML-escape a UI command in software/apt-lib.pl, allowing injection of commands through that interface. The flaw is remo…EPSS 96%analysed9.8CVE-2020-35769Webmin vulnerabilityminiserv.pl in Webmin 1.962 on Windows mishandles special characters in query arguments to the CGI program.EPSS 1.8%9.8CVE-2018-8712Webmin path traversal vulnerabilityAn issue was discovered in Webmin 1.840 and 1.880 when the default Yes setting of "Can view any file as a log file" is enabled. As a result of weak d…EPSS 1.8%9.6CVE-2021-32157Webmin cross-site scripting vulnerabilityA Cross-Site Scripting (XSS) vulnerability exists in Webmin 1.973 via the Scheduled Cron Jobs feature.EPSS 4.0%

Source: NIST National Vulnerability Database (record CVE-2003-0101), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.