Vulnerabilities > Redirection > High

DATE CVE VULNERABILITY TITLE RISK
2018-06-26 CVE-2018-1000509 Deserialization of Untrusted Data vulnerability in Redirection 2.7.1
Redirection version 2.7.1 contains a Serialisation vulnerability possibly allowing ACE vulnerability in Settings page AJAX that can result in could allow admin to execute arbitrary code in some circumstances.
network
low complexity
redirection CWE-502
7.2
2018-06-26 CVE-2018-1000504 Open Redirect vulnerability in Redirection 2.7.3
Redirection version 2.7.3 contains a ACE via file inclusion vulnerability in Pass-through mode that can result in allows admins to execute any PHP file in the filesystem.
network
low complexity
redirection CWE-601
7.2