CVE-2016-7137

medium

Description

Multiple open redirect vulnerabilities in Plone CMS 5.x through 5.0.6, 4.x through 4.3.11, and 3.3.x through 3.3.6 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the referer parameter to (1) %2b%2bgroupdashboard%2b%2bplone.dashboard1%2bgroup/%2b/portlets.Actions or (2) folder/%2b%2bcontextportlets%2b%2bplone.footerportlets/%2b /portlets.Actions or the (3) came_from parameter to /login_form.

References

https://plone.org/security/hotfix/20160830/open-redirection-in-plone

http://www.securityfocus.com/bid/92752

http://www.securityfocus.com/archive/1/539572/100/0/threaded

http://www.openwall.com/lists/oss-security/2016/09/05/5

http://www.openwall.com/lists/oss-security/2016/09/05/4

http://seclists.org/fulldisclosure/2016/Oct/80

Details

Source: Mitre, NVD

Published: 2017-03-07

Updated: 2018-10-09

Risk Information

CVSS v2

Base Score: 5.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 6.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Severity: Medium