Lucene search

K
cve[email protected]CVE-2015-1578
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2015-1578

2022-10-0316:15:50
web.nvd.nist.gov
23
cve
2015
1578
open redirect vulnerabilities
u5cms
phishing
nvd

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

7 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

53.1%

Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) pidvesa cookie to u5admin/pidvesa.php or (2) uri parameter to u5admin/meta2.php.

Affected configurations

NVD
Node
yubau5cmsRange3.9.3
CPENameOperatorVersion
yuba:u5cmsyuba u5cmsle3.9.3

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

7 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

53.1%