Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple open redirect vulnerabilities in Pligg 1.0.2 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the (1) return parameter to pligg/login.php and the (2) HTTP Referer header to user_settings.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pligg多个打开重定向漏洞
Vulnerability Description
Pligg是Pligg公司的一套开源的内容管理系统(CMS)。使用该系统建立的网站支持所有注册用户掌控网站的内容以及管理站点。 Pligg存在多个打开重定向漏洞,远程攻击者可通过(1)向pligg/login.php返回参数,(2)向user_settings.php返回HTTP Referer头把用户重新定向至任意网站,并进行钓鱼攻击。
CVSS Information
N/A
Vulnerability Type
N/A