Best Practical Request Tracker (RT) before 5.0.3 has an Open Redirect via a ticket search.
The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.
Link | Tags |
---|---|
https://docs.bestpractical.com/release-notes/rt/index.html | release notes vendor advisory |
https://docs.bestpractical.com/release-notes/rt/5.0.3 | release notes patch vendor advisory |