Description
TCMAN GIM is affected by an open redirect vulnerability. This vulnerability allows the redirection of user navigation to pages controlled by the attacker. The exploitation of this vulnerability might allow a remote attacker to obtain information.
References (1)
Core 1
Core References
Third Party Advisory x_refsource_confirm
https://www.incibe-cert.es/en/early-warning/security-advisories/tcman-gim-open-redirect-vulnerability
Scores
CVSS v3
6.1
EPSS
0.0072
EPSS Percentile
49.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Details
CWE
CWE-601
Status
published
Products (2)
tcman/gim
8.0
tcman/gim
11.0
Published
Dec 17, 2021
Tracked Since
Feb 18, 2026