Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cj82-9mrm-6p3m

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Stormshield Network Security 310 3.7.10 devices have an auth/lang.html?rurl= Open Redirect vulnerability on the captive portal. For example, the attacker can use rurl=//example.com instead of rurl=https://example.com in the query string.

Stormshield Network Security 310 3.7.10 devices have an auth/lang.html?rurl= Open Redirect vulnerability on the captive portal. For example, the attacker can use rurl=//example.com instead of rurl=https://example.com in the query string.

EPSS

Процентиль: 48%
0.0025
Низкий

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
почти 6 лет назад

Stormshield Network Security 310 3.7.10 devices have an auth/lang.html?rurl= Open Redirect vulnerability on the captive portal. For example, the attacker can use rurl=//example.com instead of rurl=https://example.com in the query string.

EPSS

Процентиль: 48%
0.0025
Низкий

Дефекты

CWE-601