An open redirect in the Login/Logout functionality of web management in AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS could allow attackers to redirect authenticated users to malicious websites.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.cvcn.gov.it/cvcn/cve/CVE-2024-25657 |
|
History
Thu, 22 Aug 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-601 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-22T19:38:20.228Z
Reserved: 2024-02-09T00:00:00.000Z
Link: CVE-2024-25657
Updated: 2024-08-01T23:52:04.875Z
Status : Awaiting Analysis
Published: 2024-03-18T20:15:09.013
Modified: 2024-11-21T09:01:10.990
Link: CVE-2024-25657
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:09:47Z
Weaknesses