NmConsole/DeviceSelection.asp in Ipswitch WhatsUp Professional 2006 and WhatsUp Professional 2006 Premium allows remote attackers to redirect users to other websites via the (1) sCancelURL and possibly (2) sRedirectUrl parameters.
References
| Link | Resource |
|---|---|
| http://www.securityfocus.com/archive/1/433808 | Vendor Advisory |
| http://secunia.com/advisories/20075 | Vendor Advisory |
| http://www.osvdb.org/25473 | |
| http://securityreason.com/securityalert/897 | |
| http://www.vupen.com/english/advisories/2006/1787 | Vendor Advisory |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/26502 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-05-15 03:02
Updated : 2017-07-19 18:31
NVD link : CVE-2006-2353
Mitre link : CVE-2006-2353
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
ipswitch
- whatsup_professional


