PT-2024-28349 · Gnuboard · Gnuboard

Letm3Through

·

Published

2024-08-26

·

Updated

2026-01-26

·

CVE-2024-39097

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Gnuboard versions 6.0.4 and below
Description An Open Redirect issue exists in Gnuboard. The issue is due to a flaw in the url parameter within the login path. This allows an attacker to redirect users to a malicious website. The vulnerable parameter url can be exploited through the login path.
Recommendations Versions prior to 6.0.5 are affected. Upgrade to version 6.0.5 to address the issue.

Exploit

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2024-39097

Affected Products

Gnuboard