![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2014-7292 |
Description: | Open redirect vulnerability in the Click-Through feature in Newtelligence dasBlog 2.1 (2.1.8102.813), 2.2 (2.2.8279.16125), and 2.3 (2.3.9074.18820) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter to ct.ashx. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.804875 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2014-7292 BugTraq ID: 70654 http://www.securityfocus.com/bid/70654 http://seclists.org/fulldisclosure/2014/Oct/91 http://packetstormsecurity.com/files/128749/Newtelligence-dasBlog-2.3-Open-Redirect.html http://www.tetraph.com/blog/cves/cve-2014-7292-newtelligence-dasblog-open-redirect-vulnerability XForce ISS Database: dasblog-cve20147292-open-redirect(97667) https://exchange.xforce.ibmcloud.com/vulnerabilities/97667 |