Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2020-07-07 CVE-2020-11882 Open Redirect vulnerability in Telefonica O2 Business 1.2.0
The O2 Business application 1.2.0 for Android exposes the canvasm.myo2.SplashActivity activity to other applications.
network
low complexity
telefonica CWE-601
6.1
2020-06-19 CVE-2017-18897 Open Redirect vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.2.0, 4.1.1, and 4.0.5, when used as an OAuth 2.0 service provider.
network
low complexity
mattermost CWE-601
6.1
2020-06-19 CVE-2017-18891 Open Redirect vulnerability in Mattermost Server
An issue was discovered in Mattermost Server before 4.2.0, 4.1.1, and 4.0.5.
network
low complexity
mattermost CWE-601
6.1
2020-06-19 CVE-2020-14454 Open Redirect vulnerability in Mattermost Desktop
An issue was discovered in Mattermost Desktop App before 4.4.0.
network
low complexity
mattermost CWE-601
6.1
2020-06-18 CVE-2020-14446 Open Redirect vulnerability in Wso2 Identity Server and Identity Server AS KEY Manager
An issue was discovered in WSO2 Identity Server through 5.10.0 and WSO2 IS as Key Manager through 5.10.0.
network
low complexity
wso2 CWE-601
6.1
2020-06-18 CVE-2020-3337 Open Redirect vulnerability in Cisco Umbrella
A vulnerability in the web server of Cisco Umbrella could allow an unauthenticated, remote attacker to redirect a user to an undesired web page.
network
low complexity
cisco CWE-601
6.1
2020-06-10 CVE-2020-6266 Open Redirect vulnerability in SAP Fiori
SAP Fiori for SAP S/4HANA, versions - 100, 200, 300, 400, allows an attacker to redirect users to a malicious site due to insufficient URL validation, leading to URL Redirection.
network
low complexity
sap CWE-601
5.4
2020-06-09 CVE-2020-1323 Open Redirect vulnerability in Microsoft Sharepoint Enterprise Server and Sharepoint Server
An open redirect vulnerability exists in Microsoft SharePoint that could lead to spoofing.To exploit the vulnerability, an attacker could send a link that has a specially crafted URL and convince the user to click the link, aka 'SharePoint Open Redirect Vulnerability'.
network
low complexity
microsoft CWE-601
6.1
2020-06-09 CVE-2020-1220 Open Redirect vulnerability in Microsoft Edge
A spoofing vulnerability exists when theMicrosoft Edge (Chromium-based) in IE Mode improperly handles specific redirects, aka 'Microsoft Edge (Chromium-based) in IE Mode Spoofing Vulnerability'.
network
low complexity
microsoft CWE-601
6.1
2020-06-02 CVE-2020-10959 Open Redirect vulnerability in Mediawiki
resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page.
network
low complexity
mediawiki CWE-601
6.1