Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-7397

Опубликовано: 10 янв. 2016
Источник: nvd
CVSS3: 7.4
CVSS2: 5.8
EPSS Низкий

Описание

Multiple open redirect vulnerabilities in the Aurora starter store in IBM WebSphere Commerce 7.0 through Feature Pack 8 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the referrer parameter.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ibm:websphere_commerce:7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 56%
0.00338
Низкий

7.4 High

CVSS3

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 7.4
github
больше 3 лет назад

Multiple open redirect vulnerabilities in the Aurora starter store in IBM WebSphere Commerce 7.0 through Feature Pack 8 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the referrer parameter.

EPSS

Процентиль: 56%
0.00338
Низкий

7.4 High

CVSS3

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other