CVE-2011-5252: Orchard ‘ReturnUrl’ Parameter URI – Open Redirect

CVE-2011-5252: Orchard 'ReturnUrl' Parameter URI - Open Redirect-渗透云记 - 专注于网络安全与技术分享
CVE-2011-5252: Orchard ‘ReturnUrl’ Parameter URI – Open Redirect
此内容为付费阅读,请付费后查看
100积分
付费阅读

漏洞标题

CVE-2011-5252: Orchard 'ReturnUrl' Parameter URI – Open Redirect

漏洞描述

Open redirect vulnerability in Users/Account/LogOff in Orchard 1.0.x before 1.0.21, 1.1.x before 1.1.31, 1.2.x before 1.2.42, and 1.3.x before 1.3.10 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the ReturnUrl parameter.

PoC代码

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享