Description
Dell EMC Unity and UnityVSA versions prior to 4.3.1.1525703027 contains a URL Redirection vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to redirect Unity users to arbitrary web URLs by tricking the victim user to click on a maliciously crafted Unisphere URL. Attacker could potentially phish information, including Unisphere users' credentials, from the victim once they are redirected.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-11884 | Dell EMC Unity and UnityVSA versions prior to 4.3.1.1525703027 contains a URL Redirection vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to redirect Unity users to arbitrary web URLs by tricking the victim user to click on a maliciously crafted Unisphere URL. Attacker could potentially phish information, including Unisphere users' credentials, from the victim once they are redirected. |
References
| Link | Providers |
|---|---|
| https://seclists.org/fulldisclosure/2018/Sep/30 |
|
History
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-16T18:03:36.680Z
Reserved: 2017-12-06T00:00:00.000Z
Link: CVE-2018-1251
No data.
Status : Modified
Published: 2018-09-28T18:29:01.083
Modified: 2024-11-21T03:59:28.067
Link: CVE-2018-1251
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD