Open redirect vulnerability in DotNetNuke (DNN) before 6.2.9 and 7.x before 7.1.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
References
Link | Resource |
---|---|
http://www.dnnsoftware.com/platform/manage/security-center | Patch Vendor Advisory |
http://secunia.com/advisories/53493 | Vendor Advisory |
http://www.securityfocus.com/bid/61809 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2014-03-12 14:55
Updated : 2014-03-13 15:56
NVD link : CVE-2013-7335
Mitre link : CVE-2013-7335
JSON object : View
Products Affected
dotnetnuke
- dotnetnuke
CWE
CWE-20
Improper Input Validation