Open redirect vulnerability in SHIRASAGI v1.7.0 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
References
Link | Resource |
---|---|
http://jvn.jp/en/jp/JVN74699196/index.html | Third Party Advisory |
https://github.com/shirasagi/shirasagi/commit/6016948ea535e51b16535888af13df064a1a15d3.patch | Patch Third Party Advisory |
https://github.com/shirasagi/shirasagi/commit/6016948ea535e51b16535888af13df064a1a15d3 | Patch Third Party Advisory |
https://www.ss-proj.org/ | Release Notes Vendor Advisory |
https://github.com/shirasagi/shirasagi | Third Party Advisory |
Configurations
Information
Published : 2019-09-12 10:15
Updated : 2019-09-13 06:35
NVD link : CVE-2019-6009
Mitre link : CVE-2019-6009
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
ss-proj
- shirasagi