PT-2025-22925 · Unknown · Summer Pearl Group Vacation Rental Management Platform
Alexandros Perrakis
+1
·
Published
2025-05-26
·
Updated
2025-05-26
·
CVE-2025-5183
CVSS v3.1
4.7
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Summer Pearl Group Vacation Rental Management Platform versions up to 1.0.1
Description
A vulnerability was found in the Summer Pearl Group Vacation Rental Management Platform, affecting some unknown processing of the component Header Handler. The manipulation of the argument
Host leads to open redirect. The attack may be initiated remotely.Recommendations
For Summer Pearl Group Vacation Rental Management Platform versions up to 1.0.1, upgrade to version 1.0.2 to address this issue. As a temporary workaround, consider restricting the manipulation of the
Host argument in the Header Handler component until the upgrade is applied.Fix
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Summer Pearl Group Vacation Rental Management Platform