An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain and could be leveraged to facilitate phishing attacks against application users.







Fixes

Solution

EFACEC has released UC 500E version 10.1.1. For more information, contact EFACEC support https://www.efacec.pt/en/contacts/ .


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-09-16T18:27:57.707Z

Reserved: 2023-12-11T16:37:13.794Z

Link: CVE-2023-50704

cve-icon Vulnrichment

Updated: 2024-08-02T22:16:47.180Z

cve-icon NVD

Status : Modified

Published: 2023-12-20T00:15:09.070

Modified: 2024-11-21T08:37:10.283

Link: CVE-2023-50704

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.