An open redirect in the Login/Logout functionality of web management in AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS could allow attackers to redirect authenticated users to malicious websites.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.cvcn.gov.it/cvcn/cve/CVE-2024-25657 |
|
History
Thu, 22 Aug 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-601 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-22T19:38:20.228Z
Reserved: 2024-02-09T00:00:00
Link: CVE-2024-25657
Updated: 2024-08-01T23:52:04.875Z
Status : Awaiting Analysis
Published: 2024-03-18T20:15:09.013
Modified: 2024-11-21T09:01:10.990
Link: CVE-2024-25657
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:09:47Z
Weaknesses