CVE-2024-45692: Virtualmin

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

Webmin before 2.202 and Virtualmin before 7.20.2 allow a network traffic loop via spoofed UDP packets on port 10000.

Affected products

  • Virtualmin Virtualmin: before 7.20.2 (fixed in 7.20.2)
  • Webmin Webmin: before 2.202 (fixed in 2.202)

Published 2024-09-04. Last modified 2026-06-17.