VYPR

CWE-601

URL Redirection to Untrusted Site ('Open Redirect')

BaseDraftLikelihood: Low

Description

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-178

CVEs mapped to this weakness (1,767)

page 46 of 89
  • CVE-2023-22259MedMar 22, 2023
    risk 0.35cvss 5.4epss 0.00

    Experience Manager versions 6.5.15.0 (and earlier) are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. A low-privilege authenticated attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue…

  • CVE-2023-22258MedMar 22, 2023
    risk 0.35cvss 5.4epss 0.00

    Experience Manager versions 6.5.15.0 (and earlier) are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. A low-privilege authenticated attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue…

  • CVE-2023-22257MedMar 22, 2023
    risk 0.35cvss 5.4epss 0.00

    Experience Manager versions 6.5.15.0 (and earlier) are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. A low-privilege authenticated attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue…

  • CVE-2023-22256MedMar 22, 2023
    risk 0.35cvss 5.4epss 0.00

    Experience Manager versions 6.5.15.0 (and earlier) are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. A low-privilege authenticated attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue…

  • CVE-2023-27292MedFeb 28, 2023
    risk 0.35cvss 5.4epss 0.01

    An open redirect vulnerability exposes OpenCATS to template injection due to improper validation of user-supplied GET parameters.

  • CVE-2022-43721MedJan 16, 2023
    risk 0.35cvss 5.4epss 0.01

    An authenticated attacker with update datasets permission could change a dataset link to an untrusted site, users could be redirected to this site when clicking on that specific dataset. This issue affects Apache Superset version 1.5.2 and prior versions and version 2.0.0.

  • CVE-2021-23385MedAug 2, 2022
    risk 0.35cvss 5.4epss 0.01

    This affects all versions of package Flask-Security. When using the get_post_logout_redirect and get_post_login_redirect functions, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as \\\evil.com/path. This…

  • CVE-2020-25154MedApr 14, 2022
    risk 0.35cvss 5.4epss 0.01

    An open redirect vulnerability in the administrative interface of the B. Braun Melsungen AG SpaceCom device Version L81/U61 and earlier, and the Data module compactplus Versions A10 and A11 allows attackers to redirect users to malicious websites.

  • CVE-2022-27110MedApr 6, 2022
    risk 0.35cvss 5.4epss 0.00

    OrangeHRM 4.10 is vulnerable to a Host header injection redirect via viewPersonalDetails endpoint.

  • CVE-2022-27109MedApr 6, 2022
    risk 0.35cvss 5.4epss 0.00

    OrangeHRM 4.10 suffers from a Referer header injection redirect vulnerability.

  • CVE-2022-26950MedMar 30, 2022
    risk 0.35cvss 5.4epss 0.01

    Archer 6.x through 6.9 P2 (6.9.0.2) is affected by an open redirect vulnerability. A remote unprivileged attacker may potentially redirect legitimate users to arbitrary web sites and conduct phishing attacks. The attacker could then steal the victims' credentials and silently…

  • CVE-2005-10001MedMar 28, 2022
    risk 0.35cvss 5.4epss 0.01

    A vulnerability was found in Netegrity SiteMinder up to 4.5.1 and classified as critical. Affected by this issue is the file /siteminderagent/pwcgi/smpwservicescgi.exe of the component Login. The manipulation of the argument target leads to an open redirect. The exploit has been…

  • CVE-2022-27090MedMar 21, 2022
    risk 0.35cvss 5.4epss 0.00

    Cscms Music Portal System v4.2 was discovered to contain a redirection vulnerability via the backurl parameter.

  • CVE-2022-23607MedFeb 1, 2022
    risk 0.35cvss 6.5epss 0.01

    treq is an HTTP library inspired by requests but written on top of Twisted's Agents. Treq's request methods (`treq.get`, `treq.post`, etc.) and `treq.client.HTTPClient` constructor accept cookies as a dictionary. Such cookies are not bound to a single domain, and are therefore…

  • CVE-2021-43812MedDec 16, 2021
    risk 0.35cvss 6.4epss 0.01

    The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. Versions before 1.6.2 do not filter out certain returnTo parameter values from the login url, which expose the application to an open redirect vulnerability. Users are advised to…

  • CVE-2021-42564MedNov 30, 2021
    risk 0.35cvss 5.4epss 0.01

    An open redirect through HTML injection in confidential messages in Cryptshare before 5.1.0 allows remote attackers (with permission to provide confidential messages via Cryptshare) to redirect targeted victims to any URL via the '<meta http-equiv="refresh"' substring in the…

  • CVE-2021-36332MedNov 23, 2021
    risk 0.35cvss 5.4epss 0.01

    Dell EMC CloudLink 7.1 and all prior versions contain a HTML and Javascript Injection Vulnerability. A remote low privileged attacker, may potentially exploit this vulnerability, directing end user to arbitrary and potentially malicious websites.

  • CVE-2021-1500MedNov 4, 2021
    risk 0.35cvss 5.4epss 0.01

    A vulnerability in the web-based management interface of Cisco Webex Video Mesh could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of the URL parameters in an HTTP request. An…

  • CVE-2021-35205MedSep 30, 2021
    risk 0.35cvss 5.4epss 0.00

    NETSCOUT Systems nGeniusONE version 6.3.0 build 1196 allows URL redirection in redirector.

  • CVE-2021-32806MedAug 2, 2021
    risk 0.35cvss 6.5epss 0.01

    Products.isurlinportal is a replacement for isURLInPortal method in Plone. Versions of Products.isurlinportal prior to 1.2.0 have an Open Redirect vulnerability. Various parts of Plone use the 'is url in portal' check for security, mostly to see if it is safe to redirect to a…