WebITR from Uniong has an Open Redirect vulnerability, which allows unauthorized remote attackers to exploit this vulnerability to forge URLs. Users, believing they are accessing a trusted domain, can be redirected to another page, potentially leading to phishing attacks.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 16 Sep 2024 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Uniong Uniong webitr | |
| CPEs | cpe:2.3:a:uniong:webitr:*:*:*:*:*:*:*:* | |
| Vendors & Products | Uniong Uniong webitr | 
Mon, 09 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Mon, 09 Sep 2024 03:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | WebITR from Uniong has an Open Redirect vulnerability, which allows unauthorized remote attackers to exploit this vulnerability to forge URLs. Users, believing they are accessing a trusted domain, can be redirected to another page, potentially leading to phishing attacks. | |
| Title | Uniong WebITR - Open Redirect | |
| Weaknesses | CWE-601 | |
| References |  | |
| Metrics | cvssV3_1 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: twcert
Published: 2024-09-09T03:07:46.448Z
Updated: 2024-09-09T13:36:37.609Z
Reserved: 2024-09-09T02:33:58.914Z
Link: CVE-2024-8586
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-09-09T13:36:30.870Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-09-09T03:15:10.270
Modified: 2024-09-16T13:28:03.400
Link: CVE-2024-8586
 Redhat
                        Redhat
                    No data.
 ReportizFlow
ReportizFlow