CVE-2017-1000027

Koozali Foundation SME Server versions 8.x, 9.x, 10.x are vulnerable to an open URL redirect vulnerability in the user web login function resulting in unauthorized account access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:koozali:sme_server:8.0:*:*:*:*:*:*:*
cpe:2.3:a:koozali:sme_server:9.0:*:*:*:*:*:*:*
cpe:2.3:a:koozali:sme_server:9.2:*:*:*:*:*:*:*
cpe:2.3:a:koozali:sme_server:10.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-07-17 13:18

Updated : 2024-02-04 19:29


NVD link : CVE-2017-1000027

Mitre link : CVE-2017-1000027

CVE.ORG link : CVE-2017-1000027


JSON object : View

Products Affected

koozali

  • sme_server
CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')