WebITR from Uniong has an Open Redirect vulnerability, which allows unauthorized remote attackers to exploit this vulnerability to forge URLs. Users, believing they are accessing a trusted domain, can be redirected to another page, potentially leading to phishing attacks.
History

Mon, 16 Sep 2024 13:45:00 +0000

Type Values Removed Values Added
First Time appeared Uniong
Uniong webitr
CPEs cpe:2.3:a:uniong:webitr:*:*:*:*:*:*:*:*
Vendors & Products Uniong
Uniong webitr

Mon, 09 Sep 2024 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 09 Sep 2024 03:15:00 +0000

Type Values Removed Values Added
Description WebITR from Uniong has an Open Redirect vulnerability, which allows unauthorized remote attackers to exploit this vulnerability to forge URLs. Users, believing they are accessing a trusted domain, can be redirected to another page, potentially leading to phishing attacks.
Title Uniong WebITR - Open Redirect
Weaknesses CWE-601
References
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2024-09-09T03:07:46.448Z

Updated: 2024-09-09T13:36:37.609Z

Reserved: 2024-09-09T02:33:58.914Z

Link: CVE-2024-8586

cve-icon Vulnrichment

Updated: 2024-09-09T13:36:30.870Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-09T03:15:10.270

Modified: 2024-09-16T13:28:03.400

Link: CVE-2024-8586

cve-icon Redhat

No data.