Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-41699

Опубликовано: 15 нояб. 2023
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Payara Platform Payara Server, Micro and Embedded (Servlet Implementation modules) allows Redirect Access to Libraries.This issue affects Payara Server, Micro and Embedded: from 5.0.0 before 5.57.0, from 4.1.2.191 before 4.1.2.191.46, from 6.0.0 before 6.8.0, from 6.2023.1 before 6.2023.11.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:payara:payara:*:*:*:*:community:*:*:*
Версия от 4.1.2.191 (включая) до 4.1.2.191.46 (исключая)
cpe:2.3:a:payara:payara:*:*:*:*:enterprise:*:*:*
Версия от 5.0.0 (включая) до 5.57.0 (исключая)
cpe:2.3:a:payara:payara:*:*:*:*:enterprise:*:*:*
Версия от 6.0.0 (включая) до 6.8.0 (исключая)
cpe:2.3:a:payara:payara:*:*:*:*:community:*:*:*
Версия от 6.2023.1 (включая) до 6.2023.11 (исключая)

EPSS

Процентиль: 34%
0.00407
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601
CWE-601

Связанные уязвимости

CVSS3: 6.1
redhat
почти 3 года назад

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Payara Platform Payara Server, Micro and Embedded (Servlet Implementation modules) allows Redirect Access to Libraries.This issue affects Payara Server, Micro and Embedded: from 5.0.0 before 5.57.0, from 4.1.2.191 before 4.1.2.191.46, from 6.0.0 before 6.8.0, from 6.2023.1 before 6.2023.11.

CVSS3: 6.1
github
почти 3 года назад

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Payara Platform Payara Server, Micro and Embedded (Servlet Implementation modules) allows Redirect Access to Libraries.This issue affects Payara Server, Micro and Embedded: from 5.0.0 before 5.57.0, from 4.1.2.191 before 4.1.2.191.46, from 6.0.0 before 6.8.0, from 6.2023.1 before 6.2023.11.

EPSS

Процентиль: 34%
0.00407
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601
CWE-601