PT-2025-50766 · Unknown · Kodexplorer
Rahad Chowdhury
·
Published
2025-12-11
·
Updated
2025-12-12
·
CVE-2025-34504
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
KodExplorer version 4.52
Description
KodExplorer 4.52 contains an open redirect issue in the user login page. Attackers can manipulate the
link parameter to redirect users to arbitrary external websites after authentication. The vulnerable endpoint is the user login page. The link parameter is susceptible to manipulation.Recommendations
Apply a fix to sanitize the
link parameter on the user login page to prevent redirection to arbitrary external websites.Exploit
Fix
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Kodexplorer