CVE-2024-4882
July 8, 2024, 6:15 p.m.
Tags
Product(s) Impacted
Sitefinity
- 15.1.8321.0 and previous versions
Description
The user may be redirected to an arbitrary site in Sitefinity 15.1.8321.0 and previous versions.
Weaknesses
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
A web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a Redirect. This simplifies phishing attacks.
CWE ID: 601Date
Published: July 8, 2024, 6:15 p.m.
Last Modified: July 8, 2024, 6:15 p.m.
Status : Received
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
security@progress.com
References
security@progress.com
security@progress.com