CVE-2015-5062
published 2015-06-24CVE-2015-5062: Open redirect vulnerability in SilverStripe CMS & Framework 3.1.13 allows remote attackers to redirect users to arbitrary web sites and conduct phishing…
PriorityP420medium5.8CVSS 2.0
AVNACMAuNCPIPAN
EPSS
2.03%
78.6th percentile
Open redirect vulnerability in SilverStripe CMS & Framework 3.1.13 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the returnURL parameter to dev/build.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| silverstripe | cms | 0 – 3.1.13 | — |
| silverstripe | framework | 0 – 3.1.13 | — |
| silverstripe | silverstripe | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Silverstripe CMS Open Redirect
osv·2022-05-14
CVE-2015-5062 [MEDIUM] Silverstripe CMS Open Redirect
Silverstripe CMS Open Redirect
Open redirect vulnerability in SilverStripe CMS & Framework 3.1.13 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the returnURL parameter to dev/build.
GHSA
Silverstripe CMS Open Redirect
ghsa·2022-05-14
CVE-2015-5062 [MEDIUM] CWE-601 Silverstripe CMS Open Redirect
Silverstripe CMS Open Redirect
Open redirect vulnerability in SilverStripe CMS & Framework 3.1.13 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the returnURL parameter to dev/build.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://hyp3rlinx.altervista.org/advisories/AS-SILVERSTRIPE0607.txthttp://packetstormsecurity.com/files/132223/SilverStripe-CMS-3.1.13-XSS-Open-Redirect.htmlhttp://www.securityfocus.com/archive/1/535716/100/0/threadedhttp://www.securityfocus.com/bid/75419http://hyp3rlinx.altervista.org/advisories/AS-SILVERSTRIPE0607.txthttp://packetstormsecurity.com/files/132223/SilverStripe-CMS-3.1.13-XSS-Open-Redirect.htmlhttp://www.securityfocus.com/archive/1/535716/100/0/threadedhttp://www.securityfocus.com/bid/75419
2015-06-24
Published