Published: January 10, 2019 / Updated: December 7, 2022
Severity Rating: Low
CVSS Score: 3.4
Affected Products: OpenAM 13.0.0

Description

OpenAM (Open Source Edition) contains an open redirect vulnerability.

Impact

When accessing a specially crafted page, the user may be redirected to an arbitrary website. As a result, the user may become a victim of a phishing attack.

Solution

Patch for this vulnerability has been released by OpenAM Consortium. Apply the patch according to the information provided by OpenAM Consortium.

Reference