Open redirect vulnerability in Booked versions prior to 3.3 allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having a user to access a specially crafted URL.
                
            References
                    | Link | Resource | 
|---|---|
| https://jvn.jp/en/jp/JVN75063798/ | Third Party Advisory | 
| https://www.bookedscheduler.com/ | Vendor Advisory | 
| https://jvn.jp/en/jp/JVN75063798/ | Third Party Advisory | 
| https://www.bookedscheduler.com/ | Vendor Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2022-07-26 06:15
Updated : 2024-11-21 07:03
NVD link : CVE-2022-30706
Mitre link : CVE-2022-30706
CVE.ORG link : CVE-2022-30706
JSON object : View
Products Affected
                twinkletoessoftware
- booked
CWE
                
                    
                        
                        CWE-601
                        
            URL Redirection to Untrusted Site ('Open Redirect')
