| ଶୀର୍ଷକ | Open Redirect using Host header Injection in phpipam/phpipam |
|---|
| ବର୍ଣ୍ଣନା | Description: Open Redirect using Host header injection is a type of vulnerability that occurs when a web application redirects a user to a malicious website. This is achieved by manipulating the Host header of the HTTP request to inject a malicious URL into the application, which then redirects the user to that URL. The impact of this vulnerability can range from phishing attacks to spreading malware or other malicious activities.
VENDOR-GITHUB-LINK: https://github.com/phpipam/phpipam
Vulnerability Type - CWE-601: Open Redirect
Affected Version : 1.5.1
GITHUB-POC-LINK AND ALL THE DETAILS ARE GIVEN IN THE BELOW LINK:
LINK : https://github.com/ctflearner/Vulnerability/blob/main/PHPIPAM/Open_Redirect.md |
|---|
| ଉତ୍ସ | ⚠️ https://github.com/phpipam/phpipam |
|---|
| ଉପଭୋକ୍ତା | Affan (UID 39417) |
|---|
| ଦାଖଲ | 08/28/2023 05:24 PM (2 ବର୍ଷ ବର୍ଷ ago) |
|---|
| ମଧ୍ୟମ ଧରଣର | 09/14/2023 05:36 PM (17 days later) |
|---|
| ସ୍ଥିତି | ଗ୍ରହଣ କରାଯାଇଛି |
|---|
| VulDB ଏଣ୍ଟ୍ରି | 239732 [phpipam 1.5.1 Header X-Forwarded-Host Redirect] |
|---|
| ପଏଣ୍ଟ | 20 |
|---|