Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Open redirect vulnerability in JForum 2.1.9 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the returnPath parameter in a validateLogin action to jforum.page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
JForum 开放重定向漏洞
Vulnerability Description
JForum是JForum团队的一套采用Java开发且基于Web的开源论坛系统。该系统具有易于使用、多语言支持等特点。 JForum 2.1.9版本中存在开放重定向漏洞。远程攻击者可通过向jforum.page页面传递validateLogin操作中的‘returnPath’参数中特制的URL,利用该漏洞重定向用户到任意网站,实施钓鱼攻击。
CVSS Information
N/A
Vulnerability Type
N/A