CVE-2022-44717

An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 1 of 2). After successful login, an attacker must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. The attack vector is Network, and the Attack Complexity required is High. Privileges required are administrator, User Interaction is required, and Scope is unchanged. The user must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:netscout:ngeniusone:6.3.2:build904:*:*:*:*:*:*

History

21 Nov 2024, 07:28

Type Values Removed Values Added
Summary
  • (es) Se descubrió un problema en NetScout nGeniusONE 6.3.2 build 904. Puede ocurrir una redirección abierta (problema 1 de 2). Después de iniciar sesión correctamente, un atacante debe visitar el parámetro vulnerable e inyectar un payload manipulado para redirigir exitosamente a un host desconocido. El vector de ataque es la red y la complejidad del ataque requerida es alta. Los privilegios requeridos son de administrador, se requiere interacción del usuario y el alcance no cambia. El usuario debe visitar el parámetro vulnerable e inyectar un payload manipulado para redirigir exitosamente a un host desconocido.
References () https://www.netscout.com/securityadvisories - Vendor Advisory () https://www.netscout.com/securityadvisories - Vendor Advisory

Information

Published : 2023-01-27 14:15

Updated : 2025-03-28 16:15


NVD link : CVE-2022-44717

Mitre link : CVE-2022-44717

CVE.ORG link : CVE-2022-44717


JSON object : View

Products Affected

netscout

  • ngeniusone
CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')