Security Advisory

CVE-2026-49103

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-27 14:37:18
Last updated 2026-05-27 16:14:12
Assigner mitre
CVSS score 9.4
State PUBLISHED

Description

Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. This occurs in mailboxes/detachall.cgi.