MEDIUM
Multiple open redirect vulnerabilities in TBDev.NET 01-01-08 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the returnto parameter to login.php or (2) the returnto parameter in a delete action to news.php
Published Jun 19, 2009
4.3
MEDIUMCVSS 2.0
EPSS 1.26%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.