CVE Published: 26/12/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: jpcert |
Vendor: Alfasado Inc. |
Product: PowerCMS Status : PUBLISHED
CVE-2019-6020 Description
Open redirect vulnerability in PowerCMS 5.12 and earlier (PowerCMS 5.x), 4.42 and earlier (PowerCMS 4.x), and 3.293 and earlier (PowerCMS 3.x) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL.