PT-2023-23664 · Avaya · Avaya Ix Workforce Engagement

CVE-2023-32218

·

Publicado

2023-05-30

·

Atualizado

2023-06-02

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Avaya IX Workforce Engagement version 15.2.7.1195
Description The issue is related to URL redirection to untrusted sites, also known as an 'Open Redirect'. This occurs when a web application redirects a user to a URL without properly validating it, potentially allowing an attacker to redirect the user to a malicious site.
Recommendations For Avaya IX Workforce Engagement version 15.2.7.1195, consider restricting access to untrusted URLs as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this issue.

Correção

Open Redirect

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-32218

Produtos afetados

Avaya Ix Workforce Engagement