Описание
Open redirect vulnerability in redirect.php in Bitrix Site Manager 6.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the goto parameter.
Ссылки
- Broken Link
- Third Party AdvisoryVDB Entry
- Broken Link
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:bitrix24:bitrix_site_manager:6.5:*:*:*:*:*:*:*
EPSS
Процентиль: 77%
0.01021
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-601
Связанные уязвимости
CVSS3: 6.1
github
почти 4 года назад
Open redirect vulnerability in redirect.php in Bitrix Site Manager 6.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the goto parameter.
EPSS
Процентиль: 77%
0.01021
Низкий
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-601