CVE-2024-46331
CVSS 3.1 Score 7.2 of 10 (high)
Details
Published Sep 27, 2024
Updated: Sep 30, 2024
CWE ID 601
Summary
CVE-2024-46331 is a newly disclosed vulnerability affecting ModStartCMS version 8.8.0. This issue involves an open redirect vulnerability located in the /admin/login redirect parameter. Attackers can exploit this weakness by crafting malicious URLs, which then redirect unsuspecting users to unintended and potentially harmful websites. This vulnerability poses a significant risk for data leakage and phishing attacks. Users are strongly advised to update their ModStartCMS installation as soon as possible to mitigate this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.