Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2020-11-24 CVE-2020-28726 Open Redirect vulnerability in Seeddms 6.0.13
Open redirect in SeedDMS 6.0.13 via the dropfolderfileform1 parameter to out/out.AddDocument.php.
network
low complexity
seeddms CWE-601
6.1
2020-11-18 CVE-2020-26215 Open Redirect vulnerability in multiple products
Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability.
network
low complexity
jupyter debian CWE-601
6.1
2020-11-18 CVE-2020-15300 Open Redirect vulnerability in Salesagility Suitecrm
SuiteCRM through 7.11.13 has an Open Redirect in the Documents module via a crafted SVG document.
network
low complexity
salesagility CWE-601
6.1
2020-11-18 CVE-2020-28724 Open Redirect vulnerability in Palletsprojects Werkzeug
Open redirect vulnerability in werkzeug before 0.11.6 via a double slash in the URL.
network
low complexity
palletsprojects CWE-601
6.1
2020-11-11 CVE-2020-26219 Open Redirect vulnerability in Touchbase.Ai Project Touchbase.Ai 1.1.0
touchbase.ai before version 2.0 is vulnerable to Open Redirect.
network
low complexity
touchbase-ai-project CWE-601
6.1
2020-10-26 CVE-2020-26161 Open Redirect vulnerability in Octopus Deploy
In Octopus Deploy through 2020.4.2, an attacker could redirect users to an external site via a modified HTTP Host header.
network
low complexity
octopus CWE-601
6.1
2020-10-21 CVE-2020-3558 Open Redirect vulnerability in Cisco Firepower Management Center
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page.
network
low complexity
cisco CWE-601
6.1
2020-10-15 CVE-2020-6365 Open Redirect vulnerability in SAP Netweaver Application Server Java
SAP NetWeaver AS Java, versions - 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, Start Page allows an unauthenticated remote attacker to redirect users to a malicious site due to insufficient reverse tabnabbing URL validation.
network
low complexity
sap CWE-601
6.1
2020-10-14 CVE-2020-24551 Open Redirect vulnerability in Iproom Mmc+ 3.2.2
IProom MMC+ Server login page does not validate specific parameters properly.
network
low complexity
iproom CWE-601
6.1
2020-10-08 CVE-2020-15242 Open Redirect vulnerability in Vercel Next.Js
Next.js versions >=9.5.0 and <9.5.4 are vulnerable to an Open Redirect.
network
low complexity
vercel CWE-601
6.1