Vulnerabilities > URL Redirection to Untrusted Site ('Open Redirect')

DATE CVE VULNERABILITY TITLE RISK
2017-07-17 CVE-2017-1000027 Open Redirect vulnerability in Koozali SME Server
Koozali Foundation SME Server versions 8.x, 9.x, 10.x are vulnerable to an open URL redirect vulnerability in the user web login function resulting in unauthorized account access.
network
low complexity
koozali CWE-601
6.1
2017-07-17 CVE-2017-1000013 Open Redirect vulnerability in PHPmyadmin
phpMyAdmin 4.0, 4.4, and 4.6 are vulnerable to an open redirect weakness
network
low complexity
phpmyadmin CWE-601
6.1
2017-07-12 CVE-2016-8953 Open Redirect vulnerability in IBM Emptoris Sourcing
IBM Emptoris Sourcing 9.5.x through 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack.
network
low complexity
ibm CWE-601
5.4
2017-07-12 CVE-2016-8947 Open Redirect vulnerability in IBM Emptoris Sourcing
IBM Emptoris Sourcing 9.5.x through 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack.
network
low complexity
ibm CWE-601
6.1
2017-07-11 CVE-2017-8621 Open Redirect vulnerability in Microsoft Exchange Server 2010/2013/2016
Microsoft Exchange Server 2010 SP3, Exchange Server 2013 SP3, Exchange Server 2013 CU16, and Exchange Server 2016 CU5 allows an open redirect vulnerability that could lead to spoofing, aka "Microsoft Exchange Open Redirect Vulnerability".
network
low complexity
microsoft CWE-601
6.1
2017-07-10 CVE-2017-1398 Open Redirect vulnerability in IBM Websphere Commerce
IBM WebSphere Commerce Enterprise, Professional, Express, and Developer 6.0, 7.0, and 8.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack.
network
low complexity
ibm CWE-601
6.1
2017-07-07 CVE-2017-2217 Open Redirect vulnerability in W3Eden Download Manager
Open redirect vulnerability in WordPress Download Manager prior to version 2.9.51 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
network
low complexity
w3eden CWE-601
6.1
2017-07-07 CVE-2017-5002 Open Redirect vulnerability in EMC RSA Archer Egrc
EMC RSA Archer 5.4.1.3, 5.5.3.1, 5.5.2.3, 5.5.2, 5.5.1.3.1, 5.5.1.1 is affected by an open redirect vulnerability.
network
low complexity
emc CWE-601
6.1
2017-06-30 CVE-2017-6018 Open Redirect vulnerability in Bbraun Station Firmware
An open redirect issue was discovered in B.
network
low complexity
bbraun CWE-601
6.1
2017-06-16 CVE-2017-8451 Open Redirect vulnerability in Elastic Kibana
With X-Pack installed, Kibana versions before 5.3.1 have an open redirect vulnerability on the login page that would enable an attacker to craft a link that redirects to an arbitrary website.
network
low complexity
elastic CWE-601
6.1