Open redirect vulnerability in the lmadmin component in Flexera FlexNet Publisher (aka Flex License Manager) 11.14.1 and earlier, as used in Citrix License Server for Windows and the Citrix License Server VPX, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
References
Configurations
History
21 Nov 2024, 03:27
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/96028 - Third Party Advisory, VDB Entry | |
References | () https://ics-cert.us-cert.gov/advisories/ICSA-18-144-01 - | |
References | () https://support.citrix.com/article/CTX219885 - Third Party Advisory | |
References | () https://www.citect.schneider-electric.com/safety-and-security-central/36-security-notifications/9134-vulnerabilities-within-schneider-electric-floating-license-manager - | |
References | () https://www.schneider-electric.com/en/download/document/SEVD-2018-137-01/ - | |
References | () https://www.schneider-electric.com/en/download/document/SEVD-2018-144-01/ - |
Information
Published : 2017-03-03 15:59
Updated : 2024-11-21 03:27
NVD link : CVE-2017-5571
Mitre link : CVE-2017-5571
CVE.ORG link : CVE-2017-5571
JSON object : View
Products Affected
flexerasoftware
- flexnet_publisher
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')