A vulnerability in the web interface of the Cisco Registered Envelope Service could allow an unauthenticated, remote attacker to redirect a user to a undesired web page, aka an Open Redirect. This vulnerability affects the Cisco Registered Envelope cloud-based service. More Information: CSCvc60123. Known Affected Releases: 5.1.0-015.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170405-res | Vendor Advisory |
http://www.securityfocus.com/bid/97433 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2017-04-07 10:59
Updated : 2017-04-14 06:45
NVD link : CVE-2017-3889
Mitre link : CVE-2017-3889
JSON object : View
Products Affected
cisco
- registered_envelope_service