Medium severity6.1NVD Advisory· Published Oct 1, 2018· Updated Jun 17, 2026
CVE-2018-17870
CVE-2018-17870
Description
An issue was discovered in BTITeam XBTIT 2.5.4. The "returnto" parameter of account_change.php is vulnerable to an open redirect, a different vulnerability than CVE-2018-15683.
Affected products
1- Range: =2.5.4
Patches
Vulnerability mechanics
References
1- github.com/btiteam/xbtit/pull/59nvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.