CVE-2014-2213
22.11.2019, 19:15
Open redirect vulnerability in the password reset functionality in POSH 3.0 through 3.2.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to portal/scr_sendmd5.php.
Vendor | Product | Version |
---|---|---|
posh_project | posh | 3.0 ≤ 𝑥 ≤ 3.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration