Vulnerability Description
An open redirect vulnerability in automatic1111/stable-diffusion-webui version 1.10.0 allows a remote unauthenticated attacker to redirect users to arbitrary websites via a specially crafted URL. This vulnerability can be exploited to conduct phishing attacks, distribute malware, and steal user credentials.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Automatic1111 | Stable-Diffusion-Webui | 1.10.0 |
Related Weaknesses (CWE)
References
- https://huntr.com/bounties/ee942e5e-4987-4f81-ba83-014fec6b33b3ExploitThird Party Advisory
FAQ
What is CVE-2024-11044?
CVE-2024-11044 is a vulnerability with a CVSS score of 6.1 (MEDIUM). An open redirect vulnerability in automatic1111/stable-diffusion-webui version 1.10.0 allows a remote unauthenticated attacker to redirect users to arbitrary websites via a specially crafted URL. This...
How severe is CVE-2024-11044?
CVE-2024-11044 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-11044?
Check the references section above for vendor advisories and patch information. Affected products include: Automatic1111 Stable-Diffusion-Webui.