PT-2024-28349 · Gnuboard · Gnuboard
Letm3Through
·
Published
2024-08-26
·
Updated
2026-01-26
·
CVE-2024-39097
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Gnuboard versions 6.0.4 and below
Description
An Open Redirect issue exists in Gnuboard. The issue is due to a flaw in the
url parameter within the login path. This allows an attacker to redirect users to a malicious website. The vulnerable parameter url can be exploited through the login path.Recommendations
Versions prior to 6.0.5 are affected.
Upgrade to version 6.0.5 to address the issue.
Exploit
Fix
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gnuboard