CVE-2021-45408

MEDIUM

SeedDMS 6.0.15 - Open Redirect via Referuri Parameter

Title source: llm
STIX 2.1

Description

Open Redirect vulnerability exists in SeedDMS 6.0.15 in out.Login.php, which llows remote malicious users to redirect users to malicious sites using the "referuri" parameter.

References (1)

Core 1
Core References

Scores

CVSS v3 6.1
EPSS 0.0064
EPSS Percentile 45.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-601
Status published
Products (1)
seeddms/seeddms 6.0.15
Published Feb 04, 2022
Tracked Since Feb 18, 2026