CVE-2013-7335

Description

Open redirect vulnerability in DotNetNuke (DNN) before 6.2.9 and 7.x before 7.1.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

Risk Information

Base Score
4.0
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N
EPSS Score
Exploitation Probability
0.274

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2013-7335,CVE-2013-4649 are fixed in Nuget - DotNetNuke.Core 6.2.9Windows
Vulnerabilities CVE-2013-7335,CVE-2013-4649 are fixed in Nuget - DotNetNuke.Core 7.1.1Windows
Vulnerabilities CVE-2013-7335,CVE-2013-4649 are fixed in Nuget - DotNetNuke.Core for Linux 6.2.9Linux
Vulnerabilities CVE-2013-7335,CVE-2013-4649 are fixed in Nuget - DotNetNuke.Core for Linux 7.1.1Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234