Falhas do tipo CWE-601

1.184 resultados

Redirecionamento aberto (Open Redirect)

É quando uma aplicação redireciona o usuário para uma URL fornecida por ele (parâmetro, query string, etc.) sem validar se o destino é confiável. Um atacante controla para onde a vítima é levada, usando a reputação da aplicação legítima para enganá-la e roubar credenciais ou distribuir malware.

Exemplo

Um site de login tem `redirect.php?url=https://exemplo.com/dashboard`. O atacante muda para `redirect.php?url=https://site-falso.com` e envia o link falso por phishing. A vítima clica confiando no domínio legítimo e acaba em um site fake que coleta suas credenciais.

Como mitigar

Valide e whitelist as URLs permitidas antes de redirecionar — nunca confie no input do usuário. Alternativamente, use IDs ou tokens que mapeiem para destinos pré-aprovados, ou verifique se a URL pertence ao mesmo domínio (validação com regex ou parsing seguro da URL).

CVE-2019-19758MEDIUMA vulnerability in the web interface of Lenovo EZ Media & Backup Center, ix2 & ix2-dl version 4.1.406.34763 and prior could allow an unautheEPSS 0.9%CVE-2020-5329MEDIUMDell EMC Avamar Server contains an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirectEPSS 0.9%CVE-2020-3311MEDIUMCisco Firepower Management Center Open Redirect VulnerabilityEPSS 0.8%CVE-2020-3178MEDIUMCisco Content Security Management Appliance Open Redirect VulnerabilitiesEPSS 0.8%CVE-2020-15234MEDIUMRedirect URL matching ignores character casingEPSS 0.8%CVE-2022-0122MEDIUMOpen Redirect in digitalbazaar/forgeEPSS 0.8%CVE-2026-64645HIGHNext.js: Server-Side Request Forgery in rewrites via attacker-controlled destination hostnameEPSS 0.8%CVE-2021-3829HIGHOpen Redirect in openwhyd/openwhydEPSS 0.8%CVE-2018-3819—The fix in Kibana for ESA-2017-23 was incomplete. With X-Pack security enabled, Kibana versions before 6.1.3 and 5.6.7 have an open redirectEPSS 0.8%CVE-2019-3788HIGHUAA redirect-uri allows wildcard in the subdomainEPSS 0.8%CVE-2020-5270MEDIUMOpen redirection when using back parameter of PrestaShopEPSS 0.8%CVE-2021-1397MEDIUMCisco Integrated Management Controller Open Redirect VulnerabilityEPSS 0.8%CVE-2023-42502MEDIUMApache Superset: Open Redirect VulnerabilityEPSS 0.8%CVE-2022-41204HIGHAn attacker can change the content of an SAP Commerce - versions 1905, 2005, 2105, 2011, 2205, login page through a manipulated URL. They caEPSS 0.8%CVE-2021-21377MEDIUMOpen Redirect in OMERO.webEPSS 0.8%CVE-2021-38343MEDIUMNested Pages <= 3.1.15 Open RedirectEPSS 0.8%CVE-2021-4000MEDIUMOpen Redirect in star7th/showdocEPSS 0.8%CVE-2021-35966MEDIUMLearningdigital.com, Inc. Orca HCM - URL Redirection to Untrusted Site ('Open Redirect')EPSS 0.8%CVE-2022-28215—SAP NetWeaver ABAP Server and ABAP Platform - versions 740, 750, 787, allows an unauthenticated attacker to redirect users to a malicious siEPSS 0.8%CVE-2024-11044MEDIUMOpen Redirect in automatic1111/stable-diffusion-webuiEPSS 0.8%