Uninett mod_auth_mellon 0.16.0

CPE Details

Uninett mod_auth_mellon 0.16.0
0.16.0
2022-08-25
12h58 +00:00
2022-10-02
18h37 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:uninett:mod_auth_mellon:0.16.0:*:*:*:*:*:*:*

Informations

Vendor

uninett

Product

mod_auth_mellon

Version

0.16.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2021-3639 2022-08-22 12h49 +00:00 A flaw was found in mod_auth_mellon where it does not sanitize logout URLs properly. This issue could be used by an attacker to facilitate phishing attacks by tricking users into visiting a trusted web application URL that redirects to an external and potentially malicious server. The highest threat from this liability is to confidentiality and integrity.
6.1
Moyen