Lucene search

K
cveMitreCVE-2008-7269
HistoryDec 01, 2010 - 4:06 p.m.

CVE-2008-7269

2010-12-0116:06:12
CWE-20
mitre
web.nvd.nist.gov
26
open redirect
siteengine 5.x
api
remote attackers
phishing

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

AI Score

6.8

Confidence

Low

EPSS

0.015

Percentile

87.2%

Open redirect vulnerability in api.php in SiteEngine 5.x allows user-assisted remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the forward parameter in a logout action.

Affected configurations

Nvd
Node
bokasiteengineMatch5.0
VendorProductVersionCPE
bokasiteengine5.0cpe:2.3:a:boka:siteengine:5.0:*:*:*:*:*:*:*

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

AI Score

6.8

Confidence

Low

EPSS

0.015

Percentile

87.2%

Related for CVE-2008-7269