Medium severity6.1NVD Advisory· Published Dec 13, 2023· Updated Jun 17, 2026
CVE-2023-6380
CVE-2023-6380
Description
Open redirect vulnerability has been found in the Open CMS product affecting versions 14 and 15 of the 'Mercury' template. An attacker could create a specially crafted URL and send it to a specific user to redirect them to a malicious site and compromise them. Exploitation of this vulnerability is possible due to the fact that there is no proper sanitization of the 'URI' parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Alkacon/Open CMSv5Range: 14
Patches
Vulnerability mechanics
References
1- www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-alkacon-software-opencmsnvdThird Party Advisory
News mentions
0No linked articles in our index yet.