VYPR

CWE-601

URL Redirection to Untrusted Site ('Open Redirect')

BaseDraftLikelihood: Low

Description

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-178

CVEs mapped to this weakness (1,692)

page 82 of 85
  • CVE-2024-47530MedSep 30, 2024
    risk 0.00cvss 5.4epss 0.00

    Scout is a web-based visualizer for VCF-files. Open redirect vulnerability allows performing phishing attacks on users by redirecting them to malicious page. /login API endpoint is vulnerable to open redirect attack via next parameter due to absence of sanitization logic.…

  • CVE-2024-8412MedSep 4, 2024
    risk 0.00cvss 4.3epss 0.00

    A vulnerability, which was classified as problematic, was found in LinuxOSsk Shakal-NG up to 1.3.3. Affected is an unknown function of the file comments/views.py. The manipulation of the argument next leads to open redirect. It is possible to launch the attack remotely. The name…

  • CVE-2024-34074MedMay 14, 2024
    risk 0.00cvss 6.1epss 0.01

    Frappe is a full-stack web application framework. Prior to 15.26.0 and 14.74.0, the login page accepts redirect argument and it allowed redirect to untrusted external URls. This behaviour can be used by malicious actors for phishing. This vulnerability is fixed in 15.26.0 and…

  • CVE-2024-33661CriApr 26, 2024
    risk 0.00cvss 9.1epss 0.01

    Portainer before 2.20.0 allows redirects when the target is not index.yaml.

  • CVE-2022-36029CriApr 25, 2024
    risk 0.00cvss 9.1epss 0.00

    Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.

  • CVE-2022-36028CriApr 25, 2024
    risk 0.00cvss 9.1epss 0.00

    Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.

  • CVE-2024-24818MedMar 21, 2024
    risk 0.00cvss 5.9epss 0.01

    EspoCRM is an Open Source Customer Relationship Management software. An attacker can inject arbitrary IP or domain in "Password Change" page and redirect victim to malicious page that could lead to credential stealing or another attack. This vulnerability is fixed in 8.1.2.

  • CVE-2024-28113LowMar 12, 2024
    risk 0.00cvss 3.5epss 0.00

    Peering Manager is a BGP session management tool. In Peering Manager <=1.8.2, it is possible to redirect users to an arbitrary page using a crafted url. As a result users can be redirected to an unexpected location. This issue has been addressed in version 1.8.3. Users are…

  • CVE-2024-25715MedFeb 11, 2024
    risk 0.00cvss 6.1epss 0.00

    Glewlwyd SSO server 2.x through 2.7.6 allows open redirection via redirect_uri.

  • CVE-2024-22400LowJan 18, 2024
    risk 0.00cvss 3.1epss 0.00

    Nextcloud User Saml is an app for authenticating Nextcloud users using SAML. In affected versions users can be given a link to the Nextcloud server and end up on a uncontrolled thirdparty server. It is recommended that the User Saml app is upgraded to version 5.1.5, 5.2.5, or…

  • CVE-2023-6552MedJan 8, 2024
    risk 0.00cvss 6.1epss 0.00

    Lack of "current" GET parameter validation during the action of changing a language leads to an open redirect vulnerability.

  • CVE-2023-52263MedDec 30, 2023
    risk 0.00cvss 6.1epss 0.00

    Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.

  • CVE-2023-49281MedDec 1, 2023
    risk 0.00cvss 4.7epss 0.01

    Calendarinho is an open source calendaring application to manage large teams of consultants. An Open Redirect issue occurs when a web application redirects users to external URLs without proper validation. This can lead to phishing attacks, where users are tricked into visiting…

  • CVE-2023-38998MedAug 9, 2023
    risk 0.00cvss 6.1epss 0.01

    An open redirect in the Login page of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows attackers to redirect a victim user to an arbitrary web site via a crafted URL.

  • CVE-2023-37624MedJul 26, 2023
    risk 0.00cvss 6.1epss 0.01

    Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.

  • CVE-2023-3568MedJul 10, 2023
    risk 0.00cvss 6.3epss 0.00

    Open Redirect in GitHub repository alextselegidis/easyappointments prior to 1.5.0.

  • CVE-2023-35948MedJul 6, 2023
    risk 0.00cvss 5.4epss 0.00

    Novu provides an API for sending notifications through multiple channels. Versions prior to 0.16.0 contain an open redirect vulnerability in the "Sign In with GitHub" functionality of Novu's open-source repository. It could have allowed an attacker to force a victim into opening…

  • CVE-2023-35171MedJun 23, 2023
    risk 0.00cvss 4.1epss 0.01

    NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. Starting in version 26.0.0 and prior to version 26.0.2, an attacker could supply a URL that redirects an unsuspecting victim from a legitimate domain to an…

  • CVE-2023-0748MedFeb 8, 2023
    risk 0.00cvss 6.4epss 0.01

    Open Redirect in GitHub repository btcpayserver/btcpayserver prior to 1.7.6.

  • CVE-2022-39359MedOct 26, 2022
    risk 0.00cvss 6.5epss 0.01

    Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1.41.9, custom GeoJSON map URL address would follow redirects to addresses that were otherwise disallowed, like link-local or private-network. This issue is…