VYPR
Medium severity6.1NVD Advisory· Published Jul 12, 2021· Updated Jun 17, 2026

CVE-2021-35037

CVE-2021-35037

Description

Jamf Pro before 10.30.1 allows for an unvalidated URL redirect vulnerability affecting Jamf Pro customers who host their environments on-premises. An attacker may craft a URL that appears to be for a customer's Jamf Pro instance, but when clicked will forward a user to an arbitrary URL that may be malicious. This is tracked via Jamf with the following ID: PI-009822

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:jamf:jamf:*:*:*:*:pro:*:*:*
    Range: <10.30.1
  • Jamf/Jamf Prodescription
  • Jamf/Prollm-fuzzy
    Range: <10.30.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.