CWE-601— URL Redirection to Untrusted Site (Open Redirect)
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.— MITRE CWE catalog
1,632 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-601page 6 of 33
- CVE-2018-7473MEDIUMCVSS 6.1EG 6.12018-03-07
Open redirect vulnerability in the SO Connect SO WIFI hotspot web interface, prior to version 140, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL.
- CVE-2018-7674MEDIUMCVSS 2.1EG 6.12018-03-28
The NetIQ Identity Manager user console, in versions prior to 4.7, is susceptible to URL redirection.
- CVE-2018-7692MEDIUMCVSS 6.1EG 6.12018-08-09
Unvalidated redirect vulnerability in in NetIQ eDirectory before 9.1.1 HF1.
- CVE-2018-7797MEDIUMCVSS 6.1EG 6.12018-12-17
A URL redirection vulnerability exists in Power Monitoring Expert, Energy Expert (formerly Power Manager) - EcoStruxure Power Monitoring Expert (PME) v8.2 (all editions), EcoStruxure Energy Expert 1.3 (formerly Power Manager), EcoStruxure …
- CVE-2018-7804MEDIUMCVSS 6.1EG 6.12018-12-17
A URL Redirection to Untrusted Site vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 where a user clicking on a specially crafted link can be redirected to a URL of the attacker's c…
- CVE-2018-8813MEDIUMCVSS 4.8EG 4.82018-04-04
Open redirect vulnerability in the login[redirect] parameter login functionality in WolfCMS 0.8.3.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a malformed URL.
- CVE-2018-8913HIGHCVSS 7.1EG 7.12019-04-01
Missing custom error page vulnerability in Synology Web Station before 2.1.3-0139 allows remote attackers to conduct phishing attacks via a crafted URL.
- CVE-2018-8937MEDIUMCVSS 6.1EG 6.12018-03-26
An issue was discovered in Open-AudIT Professional 2.1. It is possible to inject a malicious payload in the redirect_url parameter to the /login URI to trigger an open redirect. A "data:text/html;base64," payload can be used with JavaScrip…
- CVE-2019-0540MEDIUMCVSS 5.5EG 5.52019-03-05
A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a victim a specially crafted file, which could trick the victim into entering credentials, aka 'Microsoft Office Security Fe…
- CVE-2019-10098HIGHCVSS 6.1EG 8.42019-09-25
In Apache HTTP server 2.4.0 to 2.4.39, Redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an unexpected URL within the request URL.
- CVE-2019-1010290MEDIUMCVSS 6.1EG 6.12019-07-16
Babel: Multilingual site Babel All is affected by: Open Redirection. The impact is: Redirection to any URL, which is supplied to redirect.php in a "newurl" parameter. The component is: redirect.php. The attack vector is: The victim must op…
- CVE-2019-10117MEDIUMCVSS 6.1EG 6.12019-05-16
An Open Redirect issue was discovered in GitLab Community and Enterprise Edition before 11.7.8, 11.8.x before 11.8.4, and 11.9.x before 11.9.2. A redirect is triggered after successful authentication within the Oauth/:GeoAuthController for…
- CVE-2019-10133LOWCVSS 3.1EG 3.12019-06-26
A flaw was found in Moodle before 3.7, 3.6.4, 3.5.6, 3.4.9 and 3.1.18. The form to upload cohorts contained a redirect field, which was not restricted to internal URLs.
- CVE-2019-1020016MEDIUMCVSS 6.1EG 6.12019-07-29
ASH-AIO before 2.0.0.3 allows an open redirect.
- CVE-2019-10255MEDIUMCVSS 6.1EG 6.12019-03-28
An Open Redirect vulnerability for all browsers in Jupyter Notebook before 5.7.7 and some browsers (Chrome, Firefox) in JupyterHub before 0.9.5 allows crafted links to the login page, which will redirect to a malicious site after successfu…
- CVE-2019-10372MEDIUMCVSS 6.1EG 6.12019-08-07
An open redirect vulnerability in Jenkins Gitlab Authentication Plugin 1.4 and earlier in GitLabSecurityRealm.java allows attackers to redirect users to a URL outside Jenkins after successful login.
- CVE-2019-10721MEDIUMCVSS 6.1EG 6.12019-07-03
BlogEngine.NET 3.3.7.0 allows a Client Side URL Redirect via the ReturnUrl parameter, related to BlogEngine/BlogEngine.Core/Services/Security/Security.cs, login.aspx, and register.aspx.
- CVE-2019-1075MEDIUMCVSS 6.1EG 6.12019-07-15
A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'.
- CVE-2019-10751HIGHCVSS 8.8EG 8.82019-08-23
All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to the current directory, by redirecting a request from HTTP to…
- CVE-2019-10856MEDIUMCVSS 6.1EG 6.12019-04-04
In Jupyter Notebook before 5.7.8, an open redirect can occur via an empty netloc. This issue exists because of an incomplete fix for CVE-2019-10255.
- CVE-2019-10955MEDIUMCVSS 6.1EG 6.12019-04-25
In Rockwell Automation MicroLogix 1400 Controllers Series A, All Versions Series B, v15.002 and earlier, MicroLogix 1100 Controllers v14.00 and earlier, CompactLogix 5370 L1 controllers v30.014 and earlier, CompactLogix 5370 L2 controllers…
- CVE-2019-11016MEDIUMCVSS 6.1EG 6.12019-04-08
Elgg before 1.12.18 and 2.3.x before 2.3.11 has an open redirect.
- CVE-2019-11269MEDIUMCVSS 5.4EG 5.42019-06-12
Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code…
- CVE-2019-11585MEDIUMCVSS 6.1EG 6.12019-08-23
The startup.jsp resource in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to redirect users to a different website which they may use as part of per…
- CVE-2019-11589MEDIUMCVSS 6.1EG 6.12019-08-23
The ChangeSharedFilterOwner resource in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to attack users, in some cases be able to obtain a user's Cros…
- CVE-2019-12783MEDIUMCVSS 6.1EG 6.12020-07-14
An issue was discovered in Verint Impact 360 15.1. At wfo/control/signin, the rd parameter can accept a URL, to which users will be redirected after a successful login. In conjunction with CVE-2019-12784, this can be used by attackers to "…
- CVE-2019-13038MEDIUMCVSS 6.1EG 6.12019-06-29
mod_auth_mellon through 0.14.2 has an Open Redirect via the login?ReturnTo= substring, as demonstrated by omitting the // after http: in the target URL.
- CVE-2019-13175MEDIUMCVSS 6.1EG 6.12019-07-02
Read the Docs before 3.5.1 has an Open Redirect if certain user-defined redirects are used. This affects private instances of Read the Docs (in addition to the public readthedocs.org web sites).
- CVE-2019-13422MEDIUMCVSS 6.1EG 6.12019-08-23
Search Guard Kibana Plugin versions before 5.6.8-7 and before 6.x.y-12 had an issue that an attacker can redirect the user to a potentially malicious site upon Kibana login.
- CVE-2019-14223MEDIUMCVSS 6.1EG 6.12019-09-06
An issue was discovered in Alfresco Community Edition versions below 5.2.6, 6.0.N and 6.1.N. The Alfresco Share application is vulnerable to an Open Redirect attack via a crafted POST request. By manipulating the POST parameters, an attack…
- CVE-2019-14403MEDIUMCVSS 4.3EG 4.32019-07-30
cPanel before 78.0.18 offers an open mail relay because of incorrect domain-redirect routing (SEC-483).
- CVE-2019-14830MEDIUMCVSS 6.1EG 6.12021-03-19
A vulnerability was found in Moodle 3.7 to 3.7.1, 3.6 to 3.6.5, 3.5 to 3.5.7 and earlier unsupported versions, where the mobile launch endpoint contained an open redirect in some circumstances, which could result in a user's mobile access …
- CVE-2019-14831MEDIUMCVSS 6.1EG 6.12021-03-19
A vulnerability was found in Moodle 3.7 to 3.7.1, 3.6 to 3.6.5, 3.5 to 3.5.7 and earlier unsupported versions, where forum subscribe link contained an open redirect if forced subscription mode was enabled. If a forum's subscription mode wa…
- CVE-2019-14857MEDIUMCVSS 6.1EG 6.12019-11-26
A flaw was found in mod_auth_openidc before version 2.4.0.1. An open redirect issue exists in URLs with trailing slashes similar to CVE-2019-3877 in mod_auth_mellon.
- CVE-2019-1486MEDIUMCVSS 6.1EG 6.12019-12-10
A spoofing vulnerability exists in Visual Studio Live Share when a guest connected to a Live Share session is redirected to an arbitrary URL specified by the session host, aka 'Visual Studio Live Share Spoofing Vulnerability'.
- CVE-2019-14882MEDIUMCVSS 6.1EG 6.12020-03-18
A vulnerability was found in Moodle 3.7 to 3.7.3, 3.6 to 3.6.7, 3.5 to 3.5.9 and earlier where an open redirect existed in the Lesson edit page.
- CVE-2019-14912MEDIUMCVSS 6.1EG 6.12019-09-20
An issue was discovered in PRiSE adAS 1.7.0. The OPENSSO module does not properly check the goto parameter, leading to an open redirect that leaks the session cookie.
- CVE-2019-15041MEDIUMCVSS 6.1EG 6.12019-10-01
JetBrains YouTrack versions before 2019.1.52545 allowed unbounded URL whitelisting because of Inclusion of Functionality from an Untrusted Control Sphere.
- CVE-2019-15073MEDIUMCVSS 6.1EG 6.12019-11-20
An Open Redirect vulnerability for all browsers in MAIL2000 through version 6.0 and 7.0, which will redirect to a malicious site without authentication. This vulnerability affects many mail system of governments, organizations, companies a…
- CVE-2019-15688MEDIUMCVSS 6.1EG 6.12019-11-26
Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Free Anti-Virus, Kaspersky Small Office Security, Kaspersky Security Cloud up to 2020, the web protection component did not adequately inform the user a…
- CVE-2019-15771MEDIUMCVSS 6.1EG 6.12019-08-29
The nd-shortcodes plugin before 6.0 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
- CVE-2019-15772MEDIUMCVSS 6.1EG 6.12019-08-29
The nd-donations plugin before 1.4 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
- CVE-2019-15773MEDIUMCVSS 6.1EG 6.12019-08-29
The nd-travel plugin before 1.7 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
- CVE-2019-15774MEDIUMCVSS 6.1EG 6.12019-08-29
The nd-booking plugin before 2.5 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
- CVE-2019-15775MEDIUMCVSS 6.1EG 6.12019-08-29
The nd-learning plugin before 4.8 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
- CVE-2019-15776MEDIUMCVSS 6.1EG 6.12019-08-29
The simple-301-redirects-addon-bulk-uploader plugin before 1.2.5 for WordPress has no protection against 301 redirect rule injection via a CSV file.
- CVE-2019-15816HIGHCVSS 7.5EG 7.52019-08-30
The wp-private-content-plus plugin before 2.0 for WordPress has no protection against option changes via save_settings_page and other save_ functions.
- CVE-2019-15818MEDIUMCVSS 6.1EG 6.12019-08-30
The simple-301-redirects-addon-bulk-uploader plugin through 1.2.4 for WordPress has no requirement for authentication for action=bulk301export or action=bulk301clearlist.
- CVE-2019-15820MEDIUMCVSS 6.1EG 6.12019-08-30
The login-or-logout-menu-item plugin before 1.2.0 for WordPress has no requirement for lolmi_save_settings authentication.
- CVE-2019-15974MEDIUMCVSS 6.1EG 6.12020-09-23
A vulnerability in the web interface of Cisco Managed Services Accelerator (MSX) could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The vulnerability is due to improper input validation of the param…
Map vulnerabilities like CWE-601 to your infrastructure
EchelonGraph correlates every CVE — across CWE-601 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →