SeedDMS v6.0.15 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.
References
Configurations
History
21 Nov 2024, 06:19
Type | Values Removed | Values Added |
---|---|---|
References | () https://medium.com/%40rohitgautam26/cve-2021-39425-8a336eba34dd - | |
References | () https://owasp.org/www-project-web-security-testing-guide/v41/4-Web_Application_Security_Testing/11-Client_Side_Testing/04-Testing_for_Client_Side_URL_Redirect - Third Party Advisory |
07 Nov 2023, 03:37
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
31 Jul 2023, 15:11
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
CPE | cpe:2.3:a:seeddms:seeddms:6.0.15:*:*:*:*:*:*:* | |
References | (MISC) https://medium.com/@rohitgautam26/cve-2021-39425-8a336eba34dd - Exploit | |
References | (MISC) https://owasp.org/www-project-web-security-testing-guide/v41/4-Web_Application_Security_Testing/11-Client_Side_Testing/04-Testing_for_Client_Side_URL_Redirect - Third Party Advisory | |
First Time |
Seeddms
Seeddms seeddms |
|
CWE | CWE-601 |
20 Jul 2023, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-20 20:15
Updated : 2024-11-21 06:19
NVD link : CVE-2021-39425
Mitre link : CVE-2021-39425
CVE.ORG link : CVE-2021-39425
JSON object : View
Products Affected
seeddms
- seeddms
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')