PMB v7.4.6 was discovered to contain an open redirect vulnerability via the component /opac_css/pmb.php. This vulnerability allows attackers to redirect victim users to an external domain via a crafted URL.
References
Link | Resource |
---|---|
https://github.com/AetherBlack/CVE/tree/main/PMB | Exploit |
Configurations
Information
Published : 2023-03-06 13:15
Updated : 2023-03-13 08:31
NVD link : CVE-2023-24735
Mitre link : CVE-2023-24735
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
pmb_project
- pmb