CVE-2012-4032 Information

Description

Open redirect vulnerability in the login page in WebsitePanel before 1.2.2.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in ReturnUrl to Default.aspx.

Reference

http://osvdb.org/83689 http://packetstormsecurity.org/files/114541/WebsitePanel-CMS-Open-Redirect.html http://secunia.com/advisories/49813 http://websitepanel.codeplex.com/workitem/224 http://www.securityfocus.com/bid/54346 https://exchange.xforce.ibmcloud.com/vulnerabilities/76803 websitepanel-returnurl-open-redirect(76803)

Share on: