Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-323m-j8jx-g8pq

Опубликовано: 29 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

Ericsson Network Manager (ENM), versions prior to 22.2, contains a vulnerability in the REST endpoint “editprofile” where Open Redirect HTTP Header Injection can lead to redirection of the submitted request to domain out of control of ENM deployment. The attacker would need admin/elevated access to exploit the vulnerability

Ericsson Network Manager (ENM), versions prior to 22.2, contains a vulnerability in the REST endpoint “editprofile” where Open Redirect HTTP Header Injection can lead to redirection of the submitted request to domain out of control of ENM deployment. The attacker would need admin/elevated access to exploit the vulnerability

EPSS

Процентиль: 27%
0.00096
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 4.8
nvd
больше 2 лет назад

Ericsson Network Manager (ENM), versions prior to 22.2, contains a vulnerability in the REST endpoint “editprofile” where Open Redirect HTTP Header Injection can lead to redirection of the submitted request to domain out of control of ENM deployment. The attacker would need admin/elevated access to exploit the vulnerability

EPSS

Процентиль: 27%
0.00096
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-601