Open redirect vulnerability in SHIRASAGI v1.7.0 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
                
            References
                    | Link | Resource | 
|---|---|
| http://jvn.jp/en/jp/JVN74699196/index.html | Third Party Advisory | 
| https://github.com/shirasagi/shirasagi | Third Party Advisory | 
| https://github.com/shirasagi/shirasagi/commit/6016948ea535e51b16535888af13df064a1a15d3 | Patch Third Party Advisory | 
| https://github.com/shirasagi/shirasagi/commit/6016948ea535e51b16535888af13df064a1a15d3.patch | Patch Third Party Advisory | 
| https://www.ss-proj.org/ | Release Notes Vendor Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2019-09-12 17:15
Updated : 2019-09-13 13:35
NVD link : CVE-2019-6009
Mitre link : CVE-2019-6009
CVE.ORG link : CVE-2019-6009
JSON object : View
Products Affected
                ss-proj
- shirasagi
 
CWE
                
                    
                        
                        CWE-601
                        
            URL Redirection to Untrusted Site ('Open Redirect')
