An open redirect issue was discovered in OPNsense through 20.1.5. The redirect parameter "url" in login page was not filtered and can redirect user to any website.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-15771 An open redirect issue was discovered in OPNsense through 20.1.5. The redirect parameter "url" in login page was not filtered and can redirect user to any website.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T14:51:10.787Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-23015

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-05-03T22:15:08.533

Modified: 2024-11-21T05:13:29.920

Link: CVE-2020-23015

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.