CVE-2017-15572
published 2017-10-18CVE-2017-15572: In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sensitive information (password reset tokens) by reading a Referer log, because…
PriorityP338high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
EPSS
2.40%
82.1th percentile
In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sensitive information (password reset tokens) by reading a Referer log, because account/lost_password does not use a redirect.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | redmine | < redmine 3.4.2-1 (bookworm) | redmine 3.4.2-1 (bookworm) |
| redmine | redmine | <= 3.2.5 | — |
| redmine | redmine | — | — |
| redmine | redmine | — | — |
| redmine | redmine | — | — |
| redmine | redmine | >= 0 < 3.4.2-1 | 3.4.2-1 |
| redmine | redmine | >= 0 < 3.4.2-1 | 3.4.2-1 |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv7.5HIGH
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2017-15572: redmine - In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sens...
vendor_debian·2017·CVSS 7.5
CVE-2017-15572 [HIGH] CVE-2017-15572: redmine - In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sens...
In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sensitive information (password reset tokens) by reading a Referer log, because account/lost_password does not use a redirect.
Scope: local
bookworm: resolved (fixed in 3.4.2-1)
sid: resolved (fixed in 3.4.2-1)
trixie: resolved (fixed in 3.4.2-1)
GHSA
GHSA-69c8-w2qp-966r: In Redmine before 3
ghsa_unreviewed·2022-05-14
CVE-2017-15572 [HIGH] CWE-532 GHSA-69c8-w2qp-966r: In Redmine before 3
In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sensitive information (password reset tokens) by reading a Referer log, because account/lost_password does not use a redirect.
OSV
CVE-2017-15572: In Redmine before 3
osv·2017-10-18·CVSS 7.5
CVE-2017-15572 [HIGH] CVE-2017-15572: In Redmine before 3
In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sensitive information (password reset tokens) by reading a Referer log, because account/lost_password does not use a redirect.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2017-10-18
Published