PT-2021-14260 · Cybozu · Cybozu Remote Service
Kanta Nishitani
·
Published
2021-10-13
·
Updated
2021-10-19
·
CVE-2021-20806
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions:
Cybozu Remote Service versions 3.0.0 through 3.1.9
Description:
The issue allows remote attackers to redirect users to arbitrary web sites, potentially leading to phishing attacks. The attack vector is not specified.
Recommendations:
For versions 3.0.0 through 3.1.9, update to a version that contains a fix for this issue to prevent remote attackers from redirecting users to arbitrary web sites.
Fix
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cybozu Remote Service