Automated Logic's WebCtrl Server Version 6.1 'Help' index pages are vulnerable to open redirection. The vulnerability allows an attacker to send a maliciously crafted URL which could result in redirecting the user to a malicious webpage or downloading a malicious file.
References
Link | Resource |
---|---|
https://www.corporate.carrier.com/Images/CARR-PSA-ALC-WebCTRL-001-1121_tcm558-149395.pdf | Mitigation Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2022-04-19T20:38:25
Updated: 2022-04-19T20:38:25
Reserved: 2022-03-17T00:00:00
Link: CVE-2022-1019
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-04-19T21:15:13.747
Modified: 2022-04-27T16:28:27.317
Link: CVE-2022-1019
JSON object: View
Redhat Information
No data.
CWE