Логотип exploitDog
bind:CVE-2021-24288
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24288

Количество 2

Количество 2

nvd логотип

CVE-2021-24288

больше 4 лет назад

When subscribing using AcyMailing, the 'redirect' parameter isn't properly sanitized. Turning the request from POST to GET, an attacker can craft a link containing a potentially malicious landing page and send it to the victim.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-vrm9-x4ww-qpgw

больше 3 лет назад

When subscribing using AcyMailing, the 'redirect' parameter isn't properly sanitized. Turning the request from POST to GET, an attacker can craft a link containing a potentially malicious landing page and send it to the victim.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24288

When subscribing using AcyMailing, the 'redirect' parameter isn't properly sanitized. Turning the request from POST to GET, an attacker can craft a link containing a potentially malicious landing page and send it to the victim.

CVSS3: 6.1
4%
Низкий
больше 4 лет назад
github логотип
GHSA-vrm9-x4ww-qpgw

When subscribing using AcyMailing, the 'redirect' parameter isn't properly sanitized. Turning the request from POST to GET, an attacker can craft a link containing a potentially malicious landing page and send it to the victim.

4%
Низкий
больше 3 лет назад

Уязвимостей на страницу