Open redirect vulnerability in cs.html in the Autonomy (formerly Verity) Ultraseek search engine allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the url parameter.
References
Configurations
History
21 Nov 2024, 00:59
Type | Values Removed | Values Added |
---|---|---|
References | () http://sunbeltblog.blogspot.com/2009/01/constant-stream-of-ultraseek-redirects.html - | |
References | () http://www.kb.cert.org/vuls/id/202753 - US Government Resource | |
References | () http://www.securityfocus.com/bid/33500 - | |
References | () http://www.ultraseek.com/forums/thread.jspa?messageID=9818 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/48336 - |
Information
Published : 2009-01-29 19:30
Updated : 2024-11-21 00:59
NVD link : CVE-2009-0347
Mitre link : CVE-2009-0347
CVE.ORG link : CVE-2009-0347
JSON object : View
Products Affected
autonomy
- ultraseek
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')