Описание
Open redirect vulnerability in startSSO.ping in the SP Endpoints in Ping Identity PingFederate 6.10.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the TargetResource parameter.
Ссылки
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:pingidentity:pingfederate:6.10.1:*:*:*:*:*:*:*
EPSS
Процентиль: 48%
0.00253
Низкий
6.4 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Open redirect vulnerability in startSSO.ping in the SP Endpoints in Ping Identity PingFederate 6.10.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the TargetResource parameter.
EPSS
Процентиль: 48%
0.00253
Низкий
6.4 Medium
CVSS2
Дефекты
NVD-CWE-Other