Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2021-08-10 CVE-2021-33707 Open Redirect vulnerability in SAP Netweaver Knowledge Management
SAP NetWeaver Knowledge Management allows remote attackers to redirect users to arbitrary websites and conduct phishing attacks via a URL stored in a component.
network
low complexity
sap CWE-601
6.1
2021-08-03 CVE-2021-33331 Open Redirect vulnerability in Liferay DXP 7.0
Open redirect vulnerability in the Notifications module in Liferay Portal 7.0.0 through 7.3.1, and Liferay DXP 7.0 before fix pack 94, 7.1 before fix pack 19 and 7.2 before fix pack 8, allows remote attackers to redirect users to arbitrary external URLs via the 'redirect' parameter.
network
low complexity
liferay CWE-601
6.1
2021-08-03 CVE-2021-21578 Open Redirect vulnerability in Dell EMC Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability.
network
low complexity
dell CWE-601
6.1
2021-08-03 CVE-2021-21579 Open Redirect vulnerability in Dell EMC Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability.
network
low complexity
dell CWE-601
6.1
2021-08-02 CVE-2021-32806 Open Redirect vulnerability in Plone Isurlinportal 1.0.0/1.1.0/1.1.1
Products.isurlinportal is a replacement for isURLInPortal method in Plone.
network
low complexity
plone CWE-601
6.1
2021-07-30 CVE-2021-37746 Open Redirect vulnerability in multiple products
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
6.1
2021-07-30 CVE-2021-20789 Open Redirect vulnerability in Groupsession products
Open redirect vulnerability in GroupSession (GroupSession Free edition from ver2.2.0 to the version prior to ver5.1.0, GroupSession byCloud from ver3.0.3 to the version prior to ver5.1.0, and GroupSession ZION from ver3.0.3 to the version prior to ver5.1.0) allows a remote attacker to redirect a user to an arbitrary web site and conduct a phishing attack via a specially crafted URL.
network
low complexity
groupsession CWE-601
6.1
2021-07-29 CVE-2020-5329 Open Redirect vulnerability in Dell EMC Avamar Server 7.3.1/7.4.1
Dell EMC Avamar Server contains an open redirect vulnerability.
network
low complexity
dell CWE-601
6.1
2021-07-26 CVE-2021-3664 Open Redirect vulnerability in Url-Parse Project Url-Parse
url-parse is vulnerable to URL Redirection to Untrusted Site
network
low complexity
url-parse-project CWE-601
5.3
2021-07-22 CVE-2021-32786 Open Redirect vulnerability in multiple products
mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider.
network
low complexity
openidc fedoraproject CWE-601
6.1