← volver
CVE-2022-35652

CVE-2022-35652

EPSS 0.9%CWE-601
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS EPSS 0.9%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
25 jul 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
An open redirect issue was found in Moodle due to improper sanitization of user-supplied data in mobile auto-login feature. A remote attacker can create a link that leads to a trusted website, however, when clicked, it redirects the victims to arbitrary URL/domain. Successful exploitation of this vulnerability may allow a remote attacker to perform a phishing attack and steal potentially sensitive information.
Productos afectados
n/a · Moodle

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →