OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Tested on Webmin 1.390

no-replyaria-security.net
Date: Tue Feb 05 2008 - 23:18:01 CST


Aria-Security Team (Persian Security Network)
http://Aria-Security.Net
----------------------------------
Tested on Webmin 1.390 Cross Site Scripting

This vuln was tested on Webmin as an administrator account (root)
and it has worked on the search section (file) of the system.

Value Inserted:
"><script>alert('Discovered By Aria-Security')</script>

Regards,
Aria-Security Team (Persian Security Network)
The-0utl4w
Credits Goes to Aria-Security Team
----------------------------------
for more info visit:
http://forum.aria-security.net/forumdisplay.php?f=60