CVE-2017-5871 - URL Redirection to Untrusted Site (Open Redirect) - CWE-601
01 Oktober 2024, saya menyumbangkan Template CVE-2017-5871 untuk ProjectDiscovery (Nuclei Templates). 02 Oktober 2024, Template CVE-2017-5871 sedang dalam proses peninjauan. 03 Oktober 2024, Template CVE-2017-5871 disetujui.
info: name:Odoo<=8.0-20160726&9.0-OpenRedirect author:1337rokudenashi severity:medium description:| An Open Redirect vulnerability in Odoo versions <= 8.0-20160726 and 9.0. This issue allows an attacker to redirect users to untrusted sites via a crafted URL. impact:| Successful exploitation can redirect users to malicious sites, potentially leading to phishing attacks or information theft. remediation:| Update Odoo to the latest patched version provided by the vendor. reference: -https://sysdream.com/cve-2017-5871-odoo-url-redirection-to/ -https://nvd.nist.gov/vuln/detail/CVE-2017-5871 classification: cvss-metrics:CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N cvss-score:5.4 cve-id:CVE-2017-5871 cwe-id:CWE-601 cpe:cpe:2.3:a:odoo:odoo:8.0:*:*:*:*:*:*:* metadata: verified:true max-request:1 shodan-query:title:"Odoo" product:odoo vendor:odoo tags:cve2017,cve,odoo,redirect
Ini adalah bentuk kontribusi saya sebagai Security Researcher. CVE-2017-5871 - URL Redirection to Untrusted Site (Open Redirect) - CWE-601 (1337rokudenashi)