Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rcmj-xp8f-f6q4

Опубликовано: 01 мая 2022
Источник: github
Github: Прошло ревью
CVSS4: 5.3
CVSS3: 6.1

Описание

Trac Open Redirect vulnerability

Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.

Пакеты

Наименование

trac

pip
Затронутые версииВерсия исправления

< 0.10.5

0.10.5

EPSS

Процентиль: 69%
0.006
Низкий

5.3 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-20
CWE-601

Связанные уязвимости

CVSS3: 6.1
ubuntu
больше 17 лет назад

Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.

CVSS3: 6.1
nvd
больше 17 лет назад

Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.

CVSS3: 6.1
debian
больше 17 лет назад

Open redirect vulnerability in the search script in Trac before 0.10.5 ...

EPSS

Процентиль: 69%
0.006
Низкий

5.3 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-20
CWE-601