Open redirect vulnerability in IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via the out parameter.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/99013 | vdb entry |
http://www.securityfocus.com/bid/72408 | vdb entry |
http://secunia.com/advisories/62674 | third party advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg21694772 | patch vendor advisory |