Vulnerability Description
Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on crafted links.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netdisco | Netdisco | < 2.063000 |
Related Weaknesses (CWE)
References
- https://github.com/benjaminpsinclair/Netdisco-2023-AdvisoryExploit
- https://github.com/benjaminpsinclair/Netdisco-CVEExploit
- https://github.com/netdisco/netdisco/commit/a2da6a7a046c1c0fd41072dd6991eec76142Patch
- https://github.com/benjaminpsinclair/Netdisco-2023-AdvisoryExploit
- https://github.com/benjaminpsinclair/Netdisco-CVEExploit
- https://github.com/netdisco/netdisco/commit/a2da6a7a046c1c0fd41072dd6991eec76142Patch
FAQ
What is CVE-2023-37624?
CVE-2023-37624 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Netdisco before v2.063000 was discovered to contain an open redirect vulnerability. An attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to c...
How severe is CVE-2023-37624?
CVE-2023-37624 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-37624?
Check the references section above for vendor advisories and patch information. Affected products include: Netdisco Netdisco.