IProom MMC+ Server login page does not validate specific parameters properly. Attackers can use the vulnerability to redirect to any malicious site and steal the victim's login credentials.
Fixes

Solution

Contact IProom for tech support.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-09-16T23:55:31.451Z

Reserved: 2020-08-20T00:00:00

Link: CVE-2020-24551

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-10-14T13:15:13.177

Modified: 2024-11-21T05:14:58.487

Link: CVE-2020-24551

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.