Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2024-11-15 CVE-2022-20634 A vulnerability in the web-based management interface of Cisco ECE could allow an unauthenticated, remote attacker to redirect a user to an undesired web page. This vulnerability is due to improper input validation of the URL parameters in an HTTP request that is sent to an affected system.
network
low complexity
CWE-601
4.7
2024-11-15 CVE-2024-1240 Open Redirect vulnerability in Pyload 0.5.0
An open redirection vulnerability exists in pyload/pyload version 0.5.0.
network
low complexity
pyload CWE-601
6.1
2024-10-29 CVE-2024-25566 Open Redirect vulnerability in Forgerock Access Management
An Open-Redirect vulnerability exists in PingAM where well-crafted requests may cause improper validation of redirect URLs.
network
low complexity
forgerock CWE-601
6.1
2024-10-28 CVE-2024-50463 Open Redirect vulnerability in Sunshinephotocart Sunshine Photo Cart
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP Sunshine Sunshine Photo Cart.This issue affects Sunshine Photo Cart: from n/a through 3.2.9.
network
low complexity
sunshinephotocart CWE-601
6.1
2024-10-10 CVE-2024-47648 Open Redirect vulnerability in Theeventprime Eventprime
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in EventPrime Events EventPrime.This issue affects EventPrime: from n/a through 4.0.4.5.
network
low complexity
theeventprime CWE-601
6.1
2024-10-04 CVE-2024-43683 Open Redirect vulnerability in Microchip Timeprovider 4100 Firmware
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.This issue affects TimeProvider 4100: from 1.0.
network
low complexity
microchip CWE-601
6.1
2024-10-04 CVE-2024-38037 Open Redirect vulnerability in Esri Portal for Arcgis 10.9.1/11.0
There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 11.0 and 10.9.1 that may allow a remote, unauthenticated attacker to craft a URL that could redirect a victim to an arbitrary website, simplifying phishing attacks.
network
low complexity
esri CWE-601
6.1
2024-09-30 CVE-2024-47530 Open Redirect vulnerability in Clinical-Genomics Scout
Scout is a web-based visualizer for VCF-files.
network
low complexity
clinical-genomics CWE-601
6.1
2024-09-30 CVE-2024-9329 Open Redirect vulnerability in Eclipse Glassfish
In Eclipse Glassfish versions before 7.0.17, The Host HTTP parameter could cause the web application to redirect to the specified URL, when the requested endpoint is '/management/domain'.
network
low complexity
eclipse CWE-601
6.1
2024-09-19 CVE-2024-8883 Open Redirect vulnerability in Redhat products
A misconfiguration flaw was found in Keycloak.
network
low complexity
redhat CWE-601
6.1