PoC Index

CVE-2017-1000027

MEDIUM 6.1EPSS 1.2%

Koozali Foundation SME Server versions 8.x, 9.x, 10.x are vulnerable to an open URL redirect vulnerability in the user web login function resulting in unauthorized account access.

CVSS v3.0
6.1 MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS v2.0
5.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
EPSS
1.16% chance of exploitation in the next 30 days, 65th percentile
Nuclei
low · CWE-601
Published
2017-07-13
Updated
2024-08-05

Nuclei templates (1)

References

Related