ZeroHour

CVE-2019-14912

PoC
CVSS 3.1
6.1 medium
EPSS
1%p66
Published
()
Modified
Description

An issue was discovered in PRiSE adAS 1.7.0. The OPENSSO module does not properly check the goto parameter, leading to an open redirect that leaks the session cookie.

Vendors
prise
Products
adas
Weakness
CWE-601
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.