CVE-2024-27592

Open Redirect vulnerability in Corezoid Process Engine v6.5.0 allows attackers to redirect to arbitrary websites via appending a crafted link to /login/ in the login page URL.
Configurations

No configuration.

History

14 Nov 2024, 20:35

Type Values Removed Values Added
CWE CWE-601
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3

16 Apr 2024, 23:15

Type Values Removed Values Added
References
  • () https://github.com/corezoid/helm/issues/110 -

12 Apr 2024, 12:43

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad Open Redirect en Corezoid Process Engine v6.5.0 permite a los atacantes redirigir a sitios web arbitrarios agregando un enlace manipulado a /login/ en la URL de la página de inicio de sesión.

11 Apr 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-11 21:15

Updated : 2024-11-14 20:35


NVD link : CVE-2024-27592

Mitre link : CVE-2024-27592

CVE.ORG link : CVE-2024-27592


JSON object : View

Products Affected

No product.

CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')