There is an Open Redirect vulnerability in Gnuboard v6.0.4 and below via the `url` parameter in login path.
References
| Link | Resource |
|---|---|
| https://gist.github.com/Letm3through/1c7a422aa93b587fe63254e06b7f2977 | Exploit Third Party Advisory |
| https://github.com/gnuboard/g6/commit/eb52096f8328a891879066400f4599d1153d8bf2 | |
| https://github.com/gnuboard/g6/issues/557 | |
| https://github.com/gnuboard/g6/issues/582 | Exploit Issue Tracking Vendor Advisory |
Configurations
History
No history.
Information
Published : 2024-08-26 15:15
Updated : 2026-01-26 15:16
NVD link : CVE-2024-39097
Mitre link : CVE-2024-39097
CVE.ORG link : CVE-2024-39097
JSON object : View
Products Affected
sir
- gnuboard
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
