Open redirect vulnerability in api.php in SiteEngine 5.x allows user-assisted remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the forward parameter in a logout action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
boka siteengine 5.0 |