PT-2025-41543 · Unknown · Kiwire Captive Portal

Published

2025-10-10

·

Updated

2025-11-17

·

CVE-2025-11190

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Kiwire Captive Portal (affected versions not specified)
Description The software contains an open redirection issue. An attacker can redirect users to a website controlled by the attacker through manipulation of the login-url parameter. The affected component is the login functionality.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Link Following

Weakness Enumeration

Related Identifiers

CVE-2025-11190

Affected Products

Kiwire Captive Portal