Security Advisory

CVE-2021-35037

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-07-12 10:56:44
Last updated 2024-08-04 00:33:49
Assigner mitre
State PUBLISHED

Description

Jamf Pro before 10.30.1 allows for an unvalidated URL redirect vulnerability affecting Jamf Pro customers who host their environments on-premises. An attacker may craft a URL that appears to be for a customers Jamf Pro instance, but when clicked will forward a user to an arbitrary URL that may be malicious. This is tracked via Jamf with the following ID: PI-009822