Open redirect vulnerability in forums/login.php in FluxBB before 1.4.13 and 1.5.x before 1.5.7 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect_url parameter.
References
Link | Resource |
---|---|
https://fluxbb.org/development/core/tickets/961/ | Exploit |
http://fluxbb.org/forums/viewtopic.php?id=8001 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2015-01-13 03:59
Updated : 2015-01-13 16:32
NVD link : CVE-2014-10030
Mitre link : CVE-2014-10030
JSON object : View
CWE
Products Affected
fluxbb
- fluxbb