CVE-2017-5571

MEDIUM

FlexNet Publisher < 11.14.1 - Open Redirect via lmadmin Component

Title source: llm
STIX 2.1

Description

Open redirect vulnerability in the lmadmin component in Flexera FlexNet Publisher (aka Flex License Manager) 11.14.1 and earlier, as used in Citrix License Server for Windows and the Citrix License Server VPX, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

Scores

CVSS v3 6.1
EPSS 0.0178
EPSS Percentile 75.4%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-601
Status published
Products (1)
flexerasoftware/flexnet_publisher < 11.14.1
Published Mar 03, 2017
Tracked Since Feb 18, 2026