VYPR

CWE-601

URL Redirection to Untrusted Site ('Open Redirect')

BaseDraftLikelihood: Low

Description

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-178

CVEs mapped to this weakness (1,692)

page 24 of 85
  • CVE-2022-1254MedApr 20, 2022
    risk 0.40cvss 6.1epss 0.01

    A URL redirection vulnerability in Skyhigh SWG in main releases 10.x prior to 10.2.9, 9.x prior to 9.2.20, 8.x prior to 8.2.27, and 7.x prior to 7.8.2.31, and controlled release 11.x prior to 11.1.3 allows a remote attacker to redirect a user to a malicious website controlled by…

  • CVE-2022-27256MedApr 13, 2022
    risk 0.40cvss 6.1epss 0.01

    A PHP Local File inclusion vulnerability in the Redbasic theme for Hubzilla before version 7.2 allows remote attackers to include arbitrary php files via the schema parameter.

  • CVE-2022-23798MedMar 30, 2022
    risk 0.40cvss 6.1epss 0.01

    An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 through 4.1.0. Inadequate validation of URLs could result into an invalid check whether an redirect URL is internal or not.

  • CVE-2022-0165MedMar 14, 2022
    risk 0.40cvss 6.1epss 0.04

    The Page Builder KingComposer WordPress plugin through 2.9.6 does not validate the id parameter before redirecting the user to it via the kc_get_thumbn AJAX action available to both unauthenticated and authenticated users

  • CVE-2022-26158MedFeb 28, 2022
    risk 0.40cvss 6.1epss 0.01

    An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3. It accepts and reflects arbitrary domains supplied via a client-controlled Host header. Injection of a malicious URL in the Host: header of the HTTP Request results in a 302 redirect to…

  • CVE-2022-26156MedFeb 28, 2022
    risk 0.40cvss 6.1epss 0.01

    An issue was discovered in the web application in Cherwell Service Management (CSM) 10.2.3. Injection of a malicious payload within the RelayState= parameter of the HTTP request body results in the hijacking of the form action. Form-action hijacking vulnerabilities arise when an…

  • CVE-2022-24330MedFeb 25, 2022
    risk 0.40cvss 6.1epss 0.01

    In JetBrains TeamCity before 2021.2.1, a redirection to an external site was possible.

  • CVE-2021-29217MedFeb 24, 2022
    risk 0.40cvss 6.1epss 0.01

    A remote URL redirection vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE has provided a software update to resolve this vulnerability in HPE OneView Global Dashboard.

  • CVE-2022-23102MedFeb 9, 2022
    risk 0.40cvss 6.1epss 0.05

    A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0). Affected products contain an open redirect vulnerability. An attacker could trick a valid authenticated user to the device into clicking a malicious link there by leading to phishing…

  • CVE-2021-45328MedFeb 8, 2022
    risk 0.40cvss 6.1epss 0.01

    Gitea before 1.4.3 is affected by URL Redirection to Untrusted Site ('Open Redirect') via internal URLs.

  • CVE-2022-23184MedFeb 7, 2022
    risk 0.40cvss 6.1epss 0.01

    In affected Octopus Server versions when the server HTTP and HTTPS bindings are configured to localhost, Octopus Server will allow open redirects.

  • CVE-2021-45408MedFeb 4, 2022
    risk 0.40cvss 6.1epss 0.01

    Open Redirect vulnerability exists in SeedDMS 6.0.15 in out.Login.php, which llows remote malicious users to redirect users to malicious sites using the "referuri" parameter.

  • CVE-2022-22919MedJan 30, 2022
    risk 0.40cvss 6.1epss 0.01

    Adenza AxiomSL ControllerView through 10.8.1 allows redirection for SSO login URLs.

  • CVE-2021-25074MedJan 24, 2022
    risk 0.40cvss 6.1epss 0.03

    The WebP Converter for Media WordPress plugin before 4.0.3 contains a file (passthru.php) which does not validate the src parameter before redirecting the user to it, leading to an Open Redirect issue

  • CVE-2021-25028MedJan 24, 2022
    risk 0.40cvss 6.1epss 0.02

    The Event Tickets WordPress plugin before 5.2.2 does not validate the tribe_tickets_redirect_to parameter before redirecting the user to the given value, leading to an arbitrary redirect issue

  • CVE-2021-24838MedJan 17, 2022
    risk 0.40cvss 6.1epss 0.02

    The AnyComment WordPress plugin before 0.3.5 has an API endpoint which passes user input via the redirect parameter to the wp_redirect() function without being validated first, leading to an Open Redirect issue, which according to the vendor, is a feature.

  • CVE-2021-38678MedJan 14, 2022
    risk 0.40cvss 6.1epss 0.01

    An open redirect vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this vulnerability allows attackers to redirect users to an untrusted page that contains malware. We have already fixed this vulnerability in the following versions of…

  • CVE-2021-20875MedDec 24, 2021
    risk 0.40cvss 6.1epss 0.01

    Open redirect vulnerability in GroupSession Free edition ver5.1.1 and earlier, GroupSession byCloud ver5.1.1 and earlier, and GroupSession ZION ver5.1.1 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks by…

  • CVE-2021-40852MedDec 17, 2021
    risk 0.40cvss 6.1epss 0.01

    TCMAN GIM is affected by an open redirect vulnerability. This vulnerability allows the redirection of user navigation to pages controlled by the attacker. The exploitation of this vulnerability might allow a remote attacker to obtain information.

  • CVE-2020-18985MedDec 15, 2021
    risk 0.40cvss 6.1epss 0.01

    An issue in /domain/service/.ewell-known/caldav of Zimbra Collaboration 8.8.12 allows attackers to redirect users to any arbitrary website of their choosing.