CVE-2020-23015
PoC —CVSS 3.1
6.1 medium
EPSS
3%p85
Published
()
Modified
Description
An open redirect issue was discovered in OPNsense through 20.1.5. The redirect parameter "url" in login page was not filtered and can redirect user to any website.
- Vendors
- opnsense
- Products
- opnsense
- Weakness
- CWE-601
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.