CVE-2009-4788
N/A
N/A
Summary
Multiple open redirect vulnerabilities in Pligg 1.0.2 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the (1) return parameter to pligg/login.php and the (2) HTTP Referer header to user_settings.php.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://holisticinfosec.org/content/view/130/45/
- http://www.pligg.com/blog/775/pligg-cms-1-0-3-release/
- http://secunia.com/advisories/37349
References
- http://holisticinfosec.org/content/view/130/45/
- http://www.pligg.com/blog/775/pligg-cms-1-0-3-release/
- http://secunia.com/advisories/37349
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.