CVE Published: 15/11/2023 |
CVE Updated: 29/08/2024 |
CVE Year: 2023 Source: Payara |
Vendor: Payara Platform |
Product: Payara Server, Micro and Embedded Status : PUBLISHED
CVE-2023-41699 Description
URL Redirection to Untrusted Site (\'Open Redirect\') vulnerability in Payara Platform Payara Server, Micro and Embedded (Servlet Implementation modules) allows Redirect Access to Libraries.This issue affects Payara Server, Micro and Embedded: from 5.0.0 before 5.57.0, from 4.1.2.191 before 4.1.2.191.46, from 6.0.0 before 6.8.0, from 6.2023.1 before 6.2023.11.
Metrics
CVSS Version: 3.1 |
Base Score: 6.1 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N