Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9wrg-64cr-9jvf

Опубликовано: 10 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0). Affected products contain an open redirect vulnerability. An attacker could trick a valid authenticated user to the device into clicking a malicious link there by leading to phishing attacks.

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0). Affected products contain an open redirect vulnerability. An attacker could trick a valid authenticated user to the device into clicking a malicious link there by leading to phishing attacks.

EPSS

Процентиль: 89%
0.04852
Низкий

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
почти 4 года назад

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0). Affected products contain an open redirect vulnerability. An attacker could trick a valid authenticated user to the device into clicking a malicious link there by leading to phishing attacks.

CVSS3: 6.1
fstec
почти 4 года назад

Уязвимость сервера Siemens SINEMA Remote Connect, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю проводить фишинг-атаки

EPSS

Процентиль: 89%
0.04852
Низкий

Дефекты

CWE-601