An HTTP parameter may contain a URL value and could cause
the web application to redirect the request to the specified URL.
By modifying the URL value to a malicious site, an attacker may
successfully launch a phishing scam and steal user credentials.
References
Link | Resource |
---|---|
https://publisher.hitachienergy.com/preview?DocumentID=8DBD000160&LanguageCode=en&DocumentPartId=&Action=Launch | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2024-08-27 13:15
Updated : 2024-10-30 15:29
NVD link : CVE-2024-7941
Mitre link : CVE-2024-7941
CVE.ORG link : CVE-2024-7941
JSON object : View
Products Affected
hitachienergy
- microscada_x_sys600
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')