VYPR

CWE-601

URL Redirection to Untrusted Site ('Open Redirect')

BaseDraftLikelihood: Low

Description

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-178

CVEs mapped to this weakness (1,693)

page 30 of 85
  • CVE-2020-6211MedApr 14, 2020
    risk 0.40cvss 6.1epss 0.01

    SAP Business Objects Business Intelligence Platform (AdminTools), versions 4.1, 4.2, allows an attacker to redirect users to a malicious site due to insufficient URL validation and steal credentials of the victim, leading to URL Redirection vulnerability.

  • CVE-2020-6223MedApr 14, 2020
    risk 0.40cvss 6.1epss 0.01

    The open document of SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attacker to modify certain error pages to include malicious content. This can misdirect a user who is tricked into accessing these error pages rendered by the application,…

  • CVE-2020-8430MedApr 13, 2020
    risk 0.40cvss 6.1epss 0.01

    Stormshield Network Security 310 3.7.10 devices have an auth/lang.html?rurl= Open Redirect vulnerability on the captive portal. For example, the attacker can use rurl=//example.com instead of rurl=https://example.com in the query string.

  • CVE-2020-11611MedApr 7, 2020
    risk 0.40cvss 6.1epss 0.01

    An issue was discovered in xdLocalStorage through 2.0.5. The buildMessage() function in xdLocalStorage.js specifies the wildcard (*) as the targetOrigin when calling the postMessage() function on the iframe object. Therefore any domain that is currently loaded within the iframe…

  • CVE-2020-11515MedApr 7, 2020
    risk 0.40cvss 6.1epss 0.02

    The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to create new URIs (that redirect to an external web site) via the unsecured rankmath/v1/updateRedirection REST API endpoint. In other words, this is not an "Open Redirect" issue;…

  • CVE-2019-19484MedMar 20, 2020
    risk 0.40cvss 6.1epss 0.01

    Open redirect via parameter ‘p’ in login.php in Centreon (19.04.4 and below) allows an attacker to craft a payload and execute unintended behavior.

  • CVE-2019-14882MedMar 18, 2020
    risk 0.40cvss 6.1epss 0.01

    A vulnerability was found in Moodle 3.7 to 3.7.3, 3.6 to 3.6.7, 3.5 to 3.5.9 and earlier where an open redirect existed in the Lesson edit page.

  • CVE-2019-6696MedMar 15, 2020
    risk 0.40cvss 6.1epss 0.01

    An improper input validation vulnerability in FortiOS 6.2.1, 6.2.0, 6.0.8 and below until 5.4.0 under admin webUI may allow an attacker to perform an URL redirect attack via a specifically crafted request to the admin initial password change webpage.

  • CVE-2019-4595MedFeb 24, 2020
    risk 0.40cvss 6.1epss 0.01

    IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to…

  • CVE-2014-9617MedFeb 19, 2020
    risk 0.40cvss 6.1epss 0.08

    Open redirect vulnerability in remotereporter/load_logfiles.php in Netsweeper before 4.0.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.

  • CVE-2019-19758MedFeb 14, 2020
    risk 0.40cvss 6.1epss 0.01

    A vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unauthenticated, remote attacker to redirect a user to an untrusted web page.

  • CVE-2013-2764MedJan 28, 2020
    risk 0.40cvss 6.1epss 0.01

    Secure Entry Server before 4.7.0 contains a URI Redirection vulnerability which could allow remote attackers to conduct phishing attacks due to HSP_AbsoluteRedirects being disabled by default.

  • CVE-2019-4631MedJan 28, 2020
    risk 0.40cvss 6.1epss 0.01

    IBM Security Secret Server 10.7 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a…

  • CVE-2020-7936MedJan 23, 2020
    risk 0.40cvss 6.1epss 0.01

    An open redirect on the login form (and possibly other places) in Plone 4.0 through 5.2.1 allows an attacker to craft a link to a Plone Site that, when followed, and possibly after login, will redirect to an attacker's site.

  • CVE-2015-9540MedJan 4, 2020
    risk 0.40cvss 6.1epss 0.01

    Chamilo LMS through 1.9.10.2 allows a link_goto.php?link_url= open redirect, a related issue to CVE-2015-5503.

  • CVE-2019-20225MedJan 2, 2020
    risk 0.40cvss 6.1epss 0.01

    MyBB before 1.8.22 allows an open redirect on login.

  • CVE-2019-6025MedDec 26, 2019
    risk 0.40cvss 6.1epss 0.01

    Open redirect vulnerability in Movable Type series Movable Type 7 r.4602 (7.1.3) and earlier (Movable Type 7), Movable Type 6.5.0 and 6.5.1 (Movable Type 6.5), Movable Type 6.3.9 and earlier (Movable Type 6.3.x, 6.2.x, 6.1.x, 6.0.x), Movable Type Advanced 7 r.4602 (7.1.3) and…

  • CVE-2019-6021MedDec 26, 2019
    risk 0.40cvss 6.1epss 0.01

    Open redirect vulnerability in Library Information Management System LIMEDIO all versions allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL.

  • CVE-2019-6020MedDec 26, 2019
    risk 0.40cvss 6.1epss 0.01

    Open redirect vulnerability in PowerCMS 5.12 and earlier (PowerCMS 5.x), 4.42 and earlier (PowerCMS 4.x), and 3.293 and earlier (PowerCMS 3.x) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL.

  • CVE-2018-18288MedDec 26, 2019
    risk 0.40cvss 6.1epss 0.01

    CrushFTP through 8.3.0 is vulnerable to credentials theft via URL redirection.