CVE-2014-5127 Information

Description

Open redirect vulnerability in Innovative Interfaces Encore Discovery Solution 4.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in an unspecified parameter.

Reference

http://packetstormsecurity.com/files/128013/Encore-Discovery-Solution-4.3-Open-Redirect-Session-Token-In-URL.html http://www.securityfocus.com/archive/1/533233/100/0/threaded http://www.securityfocus.com/bid/69427 https://exchange.xforce.ibmcloud.com/vulnerabilities/95568

Share on: