CVE-2017-5614
Summary
| CVE | CVE-2017-5614 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-03-03 15:59:00 UTC |
| Updated | 2019-10-31 02:45:00 UTC |
| Description | Open redirect vulnerability in cgiemail and cgiecho allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving the (1) success or (2) failure parameter. |
Risk And Classification
Problem Types: CWE-601
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| cgiemail and cgiecho Multiple Security Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| oss-security - Re: CVE request: cgiemail multiple vulnerabilities | MLIST | www.openwall.com | Mailing List |
| TSR-2017-0001 Full Disclosure | cPanel Newsroom | MISC | news.cpanel.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.