CVE-2019-14223: Open Redirect in Alfresco Share
# CVE-2019-14223: Open Redirect in Alfresco Share
The Alfresco Share application is vulnerable to an Open Redirect attack via a crafted POST request. By manipulation the “failure” parameter an attacker can redirect a victim to a malicious website over any protocol the attacker desires (E.g. http, https, ftp, smb, etc.)
### NVD Disclosure:
The disclosure for this vulnerability can be found [here](https://nvd.nist.gov/vuln/detail/CVE-2019-14223).
### Proof Of Concept:
More details and the exploitation process can be found in this [PDF](https://github.com/mbadanoiu/CVE-2019-14223/blob/main/Alfresco%20-%20CVE-2019-14223.pdf).
登录后查看神龙缓存的 POC 文件快照
登录查看