CVE-2018-14931
Polarisft Intellect Core Banking Software Version 9.7.1 - Open Redirect
Record summary
CVE-2018-14931 has a selected CVSS score of 6.1 (medium); EIP currently links 1 Nuclei template.
Description
An issue was discovered in the Core and Portal modules in Polaris FT Intellect Core Banking 9.7.1. An open redirect exists via a /IntellectMain.jsp?IntellectSystem= URI.
Exploitation context
Available material
- Nuclei templates
- 1
Nuclei templates
1ProjectDiscoveryMEDIUMPolarisft Intellect Core Banking Software Version 9.7.1 - Open RedirectCVSS 6.1
Polarisft Intellect Core Banking Software Version 9.7.1 is susceptible to an open redirect issue in the Core and Portal modules via the /IntellectMain.jsp?IntellectSystem= URI.
Impact
An attacker can exploit this vulnerability to redirect users to malicious websites, leading to phishing attacks or the theft of sensitive information.
Remediation
Apply the latest security patches or updates provided by Polarisft to fix the open redirect vulnerability.
Source: ProjectDiscovery