Security Advisory

CVE-2018-17422

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-03-07 22:00:00
Last updated 2024-08-05 10:47:04
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

dotCMS before 5.0.2 has open redirects via the html/common/forward_js.jsp FORWARD_URL parameter or the html/portlet/ext/common/page_preview_popup.jsp hostname parameter.