PMB v7.4.6 was discovered to contain an open redirect vulnerability via the component /opac_css/pmb.php. This vulnerability allows attackers to redirect victim users to an external domain via a crafted URL.
References
Link | Resource |
---|---|
https://github.com/AetherBlack/CVE/tree/main/PMB | Exploit |
Configurations
History
18 Jan 2024, 18:04
Type | Values Removed | Values Added |
---|---|---|
First Time |
Sigb pmb
Sigb |
|
CPE | cpe:2.3:a:sigb:pmb:7.4.6:*:*:*:*:*:*:* |
Information
Published : 2023-03-06 21:15
Updated : 2024-01-18 18:04
NVD link : CVE-2023-24735
Mitre link : CVE-2023-24735
JSON object : View
Products Affected
sigb
- pmb
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')