Multiple open redirect vulnerabilities in Bonita BPM Portal before 6.5.3 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving the redirectUrl parameter to (1) bonita/login.jsp or (2) bonita/loginservice.
Published at: March 01, 2018 at 02:29AM
View on website
New vulnerability on the NVD: CVE-2015-3898
Tag: government hack NVD security
No comments: