Описание
CakePHP Authentication is an authentication plugin for CakePHP that can also be used in PSR-7 based applications. Prior to 2.11.1, 3.3.6, and 4.1.1, the getLoginRedirect() method contains a weakness to backslash bypasses that allows redirect targets with attacker-controlled hostnames through the redirect query string parameter. This issue is fixed in versions 2.11.1, 3.3.6, and 4.1.1.
Ссылки
- Patch
- Patch
- Patch
- Issue TrackingPatch
- Issue TrackingPatch
- Issue TrackingPatch
- Release Notes
- Release Notes
- Release Notes
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.11.1 (исключая)Версия от 3.0.0 (включая) до 3.3.6 (исключая)Версия от 4.0.0 (включая) до 4.1.1 (исключая)
Одно из
cpe:2.3:a:cakephp:cakephp:*:*:*:*:*:*:*:*
cpe:2.3:a:cakephp:cakephp:*:*:*:*:*:*:*:*
cpe:2.3:a:cakephp:cakephp:*:*:*:*:*:*:*:*
EPSS
Процентиль: 40%
0.00491
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-601
Связанные уязвимости
github
3 месяца назад
CakePHP Authentication: Open redirect weakness via backslash bypass
EPSS
Процентиль: 40%
0.00491
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-601