First published: Wed Jul 11 2018(Updated: )
Open redirect vulnerability in IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors. IBM X-Force ID: 83383.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus iNotes | =8.0.0.0 | |
IBM Lotus iNotes | =8.0.1.0 | |
IBM Lotus iNotes | =8.0.2.0 | |
IBM Lotus iNotes | =8.5.0.0 | |
IBM Lotus iNotes | =8.5.1.0 | |
IBM Lotus iNotes | =8.5.2.0 | |
IBM Lotus iNotes | =8.5.3.0 | |
IBM Lotus iNotes | =9.0.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-0594 is classified as a moderate severity vulnerability due to its potential for exploitation via phishing attacks.
To fix CVE-2013-0594, upgrade IBM iNotes to version 8.5.3 Fix Pack 6 or 9.0.1 or later.
CVE-2013-0594 affects IBM iNotes versions 8.0.0.0 through 8.5.2.0 and 9.0.0.0.
CVE-2013-0594 is an open redirect vulnerability that allows attackers to redirect users to arbitrary websites.
Yes, CVE-2013-0594 can be exploited by attackers to conduct phishing attacks by redirecting users to malicious websites.