CVE-2011-2941: Input Validation
Open redirect vulnerability in Red Hat JBoss Enterprise Portal Platform before 5.2.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the initialURI parameter.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability CVE-2011-2941?
CVE-2011-2941 is an open redirect vulnerability in Red Hat JBoss Enterprise Portal Platform that allows attackers to redirect users to arbitrary websites.
Which versions of Red Hat JBoss Enterprise Portal Platform are affected by CVE-2011-2941?
CVE-2011-2941 affects versions before 5.2.0, including 4.3.0 and 5.0.0 to 5.1.0.
What are the potential risks associated with CVE-2011-2941?
The risks associated with CVE-2011-2941 include phishing attacks and unauthorized redirection of users.
How can organizations remediate CVE-2011-2941?
Organizations can remediate CVE-2011-2941 by upgrading to Red Hat JBoss Enterprise Portal Platform version 5.2.0 or later.
Is there a security patch available for CVE-2011-2941?
Yes, a security patch addressing CVE-2011-2941 has been released as part of the updates to Red Hat JBoss Enterprise Portal Platform.