Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2020-05-04 CVE-2020-5337 Open Redirect vulnerability in RSA Archer
RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL redirection vulnerability.
network
low complexity
rsa CWE-601
6.1
2020-05-01 CVE-2019-4209 Open Redirect vulnerability in Hcltech Connections 5.5/6.0/6.5
HCL Connections v5.5, v6.0, and v6.5 contains an open redirect vulnerability which could be exploited by an attacker to conduct phishing attacks.
network
low complexity
hcltech CWE-601
6.1
2020-04-30 CVE-2020-12283 Open Redirect vulnerability in Sourcegraph
Sourcegraph before 3.15.1 has a vulnerable authentication workflow because of improper validation in the SafeRedirectURL method in cmd/frontend/auth/redirect.go, such as for the //foo//example.com substring.
network
low complexity
sourcegraph CWE-601
6.1
2020-04-20 CVE-2020-5270 Open Redirect vulnerability in Prestashop
In PrestaShop between versions 1.7.6.0 and 1.7.6.5, there is an open redirection when using back parameter.
network
low complexity
prestashop CWE-601
6.1
2020-04-17 CVE-2020-5733 Open Redirect vulnerability in Openmrs
In OpenMRS 2.9 and prior, the export functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it.
network
low complexity
openmrs CWE-601
6.1
2020-04-17 CVE-2020-5732 Open Redirect vulnerability in Openmrs
In OpenMRS 2.9 and prior, he import functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it.
network
low complexity
openmrs CWE-601
6.1
2020-04-15 CVE-2020-11665 Open Redirect vulnerability in Broadcom CA API Developer Portal
CA API Developer Portal 4.3.1 and earlier handles loginRedirect page redirects in an insecure manner, which allows attackers to perform open redirect attacks.
network
low complexity
broadcom CWE-601
6.1
2020-04-15 CVE-2020-11664 Open Redirect vulnerability in Broadcom CA API Developer Portal
CA API Developer Portal 4.3.1 and earlier handles homeRedirect page redirects in an insecure manner, which allows attackers to perform open redirect attacks.
network
low complexity
broadcom CWE-601
6.1
2020-04-15 CVE-2020-11663 Open Redirect vulnerability in Broadcom CA API Developer Portal
CA API Developer Portal 4.3.1 and earlier handles 404 requests in an insecure manner, which allows attackers to perform open redirect attacks.
network
low complexity
broadcom CWE-601
6.1
2020-04-15 CVE-2020-3954 Open Redirect vulnerability in VMWare Vrealize LOG Insight
Open Redirect vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.
network
low complexity
vmware CWE-601
6.1