CVE-2014-2213
22.11.2019, 19:15
Open redirect vulnerability in the password reset functionality in POSH 3.0 through 3.2.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to portal/scr_sendmd5.php.
| Vendor | Product | Version |
|---|---|---|
| posh_project | posh | 3.0 ≤ 𝑥 ≤ 3.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration