Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gmmg-mg5x-45rp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along with redirection of UAA users to a malicious sites.

UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along with redirection of UAA users to a malicious sites.

EPSS

Процентиль: 50%
0.00272
Низкий

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
больше 4 лет назад

UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along with redirection of UAA users to a malicious sites.

EPSS

Процентиль: 50%
0.00272
Низкий

Дефекты

CWE-601