Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2024-01-24 CVE-2024-0854 Open Redirect vulnerability in Synology Diskstation Manager
URL redirection to untrusted site ('Open Redirect') vulnerability in file access component in Synology DiskStation Manager (DSM) before 7.2.1-69057-2 allows remote authenticated users to conduct phishing attacks via unspecified vectors.
network
low complexity
synology CWE-601
5.4
2024-01-22 CVE-2024-0781 Open Redirect vulnerability in Martmbithi Internet Banking System 1.0
A vulnerability, which was classified as problematic, was found in CodeAstro Internet Banking System 1.0.
network
low complexity
martmbithi CWE-601
6.1
2024-01-22 CVE-2024-22113 Open Redirect vulnerability in Anglers-Net CGI An-Anlyzer 20190624/20231231
Open redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary websites and conduct phishing attacks via a specially crafted URL.
network
low complexity
anglers-net CWE-601
6.1
2024-01-19 CVE-2023-50963 Open Redirect vulnerability in IBM Storage Defender Data Protect
IBM Storage Defender - Data Protect 1.0.0 through 1.4.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers.
network
low complexity
ibm CWE-601
5.4
2024-01-18 CVE-2024-22400 Open Redirect vulnerability in Nextcloud SSO & Saml Authentication
Nextcloud User Saml is an app for authenticating Nextcloud users using SAML.
network
low complexity
nextcloud CWE-601
6.1
2024-01-16 CVE-2023-3771 Open Redirect vulnerability in T1 Project T1
The T1 WordPress theme through 19.0 is vulnerable to unauthenticated open redirect with which any attacker and redirect users to arbitrary websites.
network
low complexity
t1-project CWE-601
6.1
2024-01-15 CVE-2024-0319 Open Redirect vulnerability in Fireeye Hxtool 4.6
Open Redirect vulnerability in FireEye HXTool affecting version 4.6, the exploitation of which could allow an attacker to redirect a legitimate user to a malicious page by changing the 'redirect_uri' parameter.
network
low complexity
fireeye CWE-601
6.1
2024-01-15 CVE-2024-0545 Open Redirect vulnerability in Fairsketch Rise Ultimate Project Manager 3.5.3
A vulnerability classified as problematic was found in CodeCanyon RISE Rise Ultimate Project Manager 3.5.3.
network
low complexity
fairsketch CWE-601
6.1
2024-01-10 CVE-2023-49394 Open Redirect vulnerability in Easycorp Zentao
Zentao versions 4.1.3 and before has a URL redirect vulnerability, which prevents the system from functioning properly.
network
low complexity
easycorp CWE-601
6.1
2024-01-09 CVE-2024-21734 Open Redirect vulnerability in SAP Marketing 160
SAP Marketing (Contacts App) - version 160, allows an attacker with low privileges to trick a user to open malicious page which could lead to a very convincing phishing attack with low impact on confidentiality and integrity of the application.
network
low complexity
sap CWE-601
5.4