Логотип exploitDog
bind:CVE-2013-4390
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-4390

Количество 2

Количество 2

nvd логотип

CVE-2013-4390

больше 12 лет назад

Open redirect vulnerability in the AbstractAuthenticationFormServlet in the Auth Core (org.apache.sling.auth.core) bundle before 1.1.4 in Apache Sling allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the resource parameter, related to "a custom login form and XSS."

CVSS2: 5.8
EPSS: Низкий
github логотип

GHSA-j7f2-cqvq-5jcf

больше 3 лет назад

Apache Sling Auth Core bundle vulnerable to Open Redirection

CVSS3: 4.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2013-4390

Open redirect vulnerability in the AbstractAuthenticationFormServlet in the Auth Core (org.apache.sling.auth.core) bundle before 1.1.4 in Apache Sling allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the resource parameter, related to "a custom login form and XSS."

CVSS2: 5.8
1%
Низкий
больше 12 лет назад
github логотип
GHSA-j7f2-cqvq-5jcf

Apache Sling Auth Core bundle vulnerable to Open Redirection

CVSS3: 4.7
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу