ID:5913 - Exploit for Open redirect in Cisco Systems, Inc products - CVE-2019-1943

 
Main Vulnerability Database Exploits ID:5913 - Exploit for Open redirect in Cisco Systems, Inc products - CVE-2019-1943

ID:5913 - Exploit for Open redirect in Cisco Systems, Inc products - CVE-2019-1943

Published: June 17, 2021


Vulnerability identifier: #VU19287
Vulnerability risk: Low
CVE-ID: CVE-2019-1943
CWE-ID: CWE-601
Exploitation vector: Remote access
Vulnerable software:
Cisco Small Business 500 Series Stackable Managed Switches
Cisco Small Business 300 Series Managed Switches
Cisco Small Business 200 Series Smart Switches

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to redirect a user to a malicious web page.

The vulnerability exists due to the improper input validation of the parameters of an HTTP request. A remote attacker can intercept a user's HTTP request and modify it into a request that causes the web interface to redirect the user to a specific malicious URL. 

Remediation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.