← Back to CVE List

CVE-2015-3898

Published: 2018-02-28T21:29Z
Last Modified: 2024-11-21T02:30Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Multiple open redirect vulnerabilities in Bonita BPM Portal before 6.5.3 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving the redirectUrl parameter to (1) bonita/login.jsp or (2) bonita/loginservice. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt