VYPR

CWE-601

URL Redirection to Untrusted Site ('Open Redirect')

BaseDraftLikelihood: Low

Description

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-178

CVEs mapped to this weakness (1,693)

page 45 of 85
  • CVE-2022-23607MedFeb 1, 2022
    risk 0.35cvss 6.5epss 0.01

    treq is an HTTP library inspired by requests but written on top of Twisted's Agents. Treq's request methods (`treq.get`, `treq.post`, etc.) and `treq.client.HTTPClient` constructor accept cookies as a dictionary. Such cookies are not bound to a single domain, and are therefore…

  • CVE-2021-43812MedDec 16, 2021
    risk 0.35cvss 6.4epss 0.01

    The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. Versions before 1.6.2 do not filter out certain returnTo parameter values from the login url, which expose the application to an open redirect vulnerability. Users are advised to…

  • CVE-2021-42564MedNov 30, 2021
    risk 0.35cvss 5.4epss 0.01

    An open redirect through HTML injection in confidential messages in Cryptshare before 5.1.0 allows remote attackers (with permission to provide confidential messages via Cryptshare) to redirect targeted victims to any URL via the '<meta http-equiv="refresh"' substring in the…

  • CVE-2021-36332MedNov 23, 2021
    risk 0.35cvss 5.4epss 0.01

    Dell EMC CloudLink 7.1 and all prior versions contain a HTML and Javascript Injection Vulnerability. A remote low privileged attacker, may potentially exploit this vulnerability, directing end user to arbitrary and potentially malicious websites.

  • CVE-2021-1500MedNov 4, 2021
    risk 0.35cvss 5.4epss 0.01

    A vulnerability in the web-based management interface of Cisco Webex Video Mesh could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of the URL parameters in an HTTP request. An…

  • CVE-2021-35205MedSep 30, 2021
    risk 0.35cvss 5.4epss 0.00

    NETSCOUT Systems nGeniusONE version 6.3.0 build 1196 allows URL redirection in redirector.

  • CVE-2021-32806MedAug 2, 2021
    risk 0.35cvss 6.5epss 0.01

    Products.isurlinportal is a replacement for isURLInPortal method in Plone. Versions of Products.isurlinportal prior to 1.2.0 have an Open Redirect vulnerability. Various parts of Plone use the 'is url in portal' check for security, mostly to see if it is safe to redirect to a…

  • CVE-2021-23401MedJul 5, 2021
    risk 0.35cvss 5.4epss 0.01

    This affects all versions of package Flask-User. When using the make_safe_url function, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as /////evil.com/path or \\\evil.com/path. This vulnerability is only…

  • CVE-2020-23182MedJul 2, 2021
    risk 0.35cvss 5.4epss 0.01

    The component /php-fusion/infusions/shoutbox_panel/shoutbox_archive.php in PHP-Fusion 9.03.60 allows attackers to redirect victim users to malicious websites via a crafted payload entered into the Shoutbox message panel.

  • CVE-2021-27352MedMar 29, 2021
    risk 0.35cvss 5.4epss 0.01

    An open redirect vulnerability in Ilch CMS version 2.1.42 allows attackers to redirect users to an attacker's site after a successful login.

  • CVE-2021-1218MedJan 20, 2021
    risk 0.35cvss 5.4epss 0.01

    A vulnerability in the web management interface of Cisco Smart Software Manager satellite could allow an authenticated, remote attacker to redirect a user to an undesired web page. The vulnerability is due to improper input validation of the URL parameters in an HTTP request…

  • CVE-2020-10775MedAug 24, 2020
    risk 0.35cvss 5.3epss 0.02

    An Open redirect vulnerability was found in ovirt-engine versions 4.4 and earlier, where it allows remote attackers to redirect users to arbitrary web sites and attempt phishing attacks. Once the target has opened the malicious URL in their browser, the critical part of the URL…

  • CVE-2020-6266MedJun 10, 2020
    risk 0.35cvss 5.4epss 0.01

    SAP Fiori for SAP S/4HANA, versions - 100, 200, 300, 400, allows an attacker to redirect users to a malicious site due to insufficient URL validation, leading to URL Redirection.

  • CVE-2020-1997MedMay 13, 2020
    risk 0.35cvss 5.3epss 0.01

    An open redirection vulnerability in the GlobalProtect component of Palo Alto Networks PAN-OS allows an attacker to specify an arbitrary redirection target away from the trusted GlobalProtect gateway. If the user then successfully authenticates it will cause them to access an…

  • CVE-2019-17151MedJan 7, 2020
    risk 0.35cvss 5.4epss 0.01

    This vulnerability allows remote attackers redirect users to an external resource on affected installations of Tencent WeChat Prior to 7.0.9. User interaction is required to exploit this vulnerability in that the target must be within a chat session together with the attacker.…

  • CVE-2010-3669MedNov 4, 2019
    risk 0.35cvss 5.4epss 0.01

    TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS and Open Redirection in the frontend login box.

  • CVE-2019-5823MedJun 27, 2019
    risk 0.35cvss 5.4epss 0.01

    Insufficient policy enforcement in service workers in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.

  • CVE-2017-5871MedMay 22, 2019
    risk 0.35cvss 5.4epss 0.03

    Odoo Version <= 8.0-20160726 and Version 9 is affected by: CWE-601: Open redirection. The impact is: obtain sensitive information (remote).

  • CVE-2019-5433MedMay 6, 2019
    risk 0.35cvss 5.4epss 0.02

    A user having access to the UI of a Revive Adserver instance could be tricked into clicking on a specifically crafted admin account-switch.php URL that would eventually lead them to another (unsafe) domain, potentially used for stealing credentials or other phishing attacks.…

  • CVE-2019-4035MedMar 22, 2019
    risk 0.35cvss 5.4epss 0.01

    IBM Content Navigator 3.0CD could allow attackers to direct web traffic to a malicious site. If attackers make a fake IBM Content Navigator site, they can send a link to ICN users to send request to their Edit client directly. Then Edit client will download documents from the…