Babel: Multilingual site Babel All is affected by: Open Redirection. The impact is: Redirection to any URL, which is supplied to…
dwf·CWE-601·Published 2019-07-16
Babel: Multilingual site Babel All is affected by: Open Redirection. The impact is: Redirection to any URL, which is supplied to redirect.php in a "newurl" parameter. The component is: redirect.php. The attack vector is: The victim must open a link created by an attacker. Attacker may use any legitimate site using Babel to redirect user to a URL of his/her choosing.
Babel: Multilingual site Babel All is affected by: Open Redirection. The impact is: Redirection to any URL, which is supplied to redirect.php in a "newurl" parameter. The component is: redirect.php. The attack vector is: The victim must open a link created by an attacker. Attacker may use any legitimate site using Babel to redirect user to a URL of his/her choosing.
Babel: todos los sitios Babel multilingüe están afectados por: Redireccionamiento Abierto. El impacto es: Redireccionamiento en cualquier URL, que es suministrado en un archivo redirect.php en un parámetro "newurl". El componente es: el archivo redirect.php. El vector de ataque es: La víctima debe abrir un enlace diseñado por un atacante. El atacante puede usar cualquier sitio legítimo usando Babel para redireccionar al usuario a una URL de su elección.
| Version | Type | Source | Base | Exp | Impact | Vector |
|---|---|---|---|---|---|---|
| 2.0 | Primary | NVD | 5.8 | 8.6 | 4.9 | AV:N/AC:M/Au:N/C:P/I:P/A:N |
| 3.0 | Primary | NVD | 6.1 | 2.8 | 2.7 | CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |