cbcvebase.
CVE-2019-3877
published 2019-03-27

CVE-2019-3877: A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allows requests with backslashes to pass through by assuming…

PriorityP428medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
EPSS
2.13%
79.9th percentile
A vulnerability was found in mod_auth_mellon before v0.14.2. An open redirect in the logout URL allows requests with backslashes to pass through by assuming that it is a relative URL, while the browsers silently convert backslash characters into forward slashes treating them as an absolute URL. This mismatch allows an attacker to bypass the redirect URL validation logic in apr_uri_parse function.

Affected

9 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
debianlibapache2-mod-auth-mellon< libapache2-mod-auth-mellon 0.14.2-1 (bookworm)libapache2-mod-auth-mellon 0.14.2-1 (bookworm)
debianlibapache2-mod-auth-openidc< libapache2-mod-auth-openidc 2.4.0.3-1 (bookworm)libapache2-mod-auth-openidc 2.4.0.3-1 (bookworm)
fedoraprojectfedora
mod_auth_mellon_projectmod_auth_mellon< 0.14.20.14.2
openidcmod_auth_openidc< 2.4.0.12.4.0.1
redhatenterprise_linux
uninettmod_auth_mellon

CVSS provenance

nvdv3.06.1MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv6.1MEDIUM
vendor_debian6.1MEDIUM
vendor_redhat6.1MEDIUM
vendor_ubuntu6.1MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.