CVE-2020-24551

Severity CVSS v4.0:
Pending analysis
Type:
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
Publication date:
14/10/2020
Last modified:
26/10/2020

Description

IProom MMC+ Server login page does not validate specific parameters properly. Attackers can use the vulnerability to redirect to any malicious site and steal the victim's login credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:iproom:mmc\+:3.2.2:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools