CVE-2024-9329
Glassfish redirect to untrusted site
Severity Score
6.9
*CVSS v4
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Attend
*SSVC
Descriptions
In Eclipse Glassfish versions before 7.0.17, The Host HTTP parameter could cause the web application to redirect to the specified URL, when the requested endpoint is '/management/domain'. By modifying the URL value to a malicious site, an attacker may successfully launch a phishing scam and steal user credentials.
*Credits:
Marco Ventura (redteam https://www.gruppotim.it/it/footer/red-team.html), Claudia Bartolini (redteam https://www.gruppotim.it/it/footer/red-team.html), Andrea Carlo Maria Dattola (redteam https://www.gruppotim.it/it/footer/red-team.html), Debora Esposito (redteam https://www.gruppotim.it/it/footer/red-team.html), Massimiliano Brolli (redteam https://www.gruppotim.it/it/footer/red-team.html)
CVSS Scores
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
System
Vulnerable | Subsequent
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Attend
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2024-09-29 CVE Reserved
- 2024-09-30 CVE Published
- 2024-10-07 CVE Updated
- 2024-10-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-233: Improper Handling of Parameters
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://gitlab.eclipse.org/security/vulnerability-reports/-/issues/232 | Issue Tracking |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://github.com/eclipse-ee4j/glassfish/pull/25106 | 2024-10-07 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Eclipse Foundation Search vendor "Eclipse Foundation" | Glassfish Search vendor "Eclipse Foundation" for product "Glassfish" | >= 5.1.0 <= 7.0.16 Search vendor "Eclipse Foundation" for product "Glassfish" and version " >= 5.1.0 <= 7.0.16" | en |
Affected
|