Description
Open redirect vulnerability in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin Front End Upload Arbitrary File Upload (0.5.4.4)
WordPress Plugin Easy Property Listings Cross-Site Scripting (3.3.5.8)
Jenkins Protection Mechanism Failure Vulnerability (CVE-2021-21696)
WordPress Plugin Email Subscribers & Newsletters Cross-Site Scripting (3.4.12)
Oracle Application Server Other Vulnerability (CVE-2007-0286)