Open redirect vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.
2016-02-29T11:59:00.123
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 7.4 (HIGH)
AV:N/AC:M/Au:N/C:P/I:P/A:N
8.6
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | websphere_portal | 8.0.0.0 | Yes |
Application | ibm | websphere_portal | 8.0.0.1 | Yes |
Application | ibm | websphere_portal | 8.5.0.0 | Yes |