Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-27qh-h38r-jf2v

Опубликовано: 02 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the login.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted URL.

Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the login.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted URL.

EPSS

Процентиль: 37%
0.0016
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
около 2 лет назад

Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the login.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted URL.

EPSS

Процентиль: 37%
0.0016
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601