CVE-2014-8070: Medium severity pagekit vulnerability
Published Oct 14, 2014
·Updated
Open redirect vulnerability in YOOtheme Pagekit CMS 0.8.7 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to index.php/user/logout.
Affected Software
1 affected component
YOOtheme Pagekit=0.8.7
Event History
Oct 14, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8070?
CVE-2014-8070 is classified as a high-severity vulnerability due to its potential for phishing attacks.
2
How do I fix CVE-2014-8070?
To fix CVE-2014-8070, update YOOtheme Pagekit CMS to the latest version that resolves the open redirect issue.
3
What type of vulnerability is CVE-2014-8070?
CVE-2014-8070 is an open redirect vulnerability that allows attackers to redirect users to malicious websites.
4
Who is affected by CVE-2014-8070?
Users of YOOtheme Pagekit CMS version 0.8.7 are affected by CVE-2014-8070.
5
What are the potential risks of CVE-2014-8070?
The potential risks of CVE-2014-8070 include phishing attacks that can compromise user credentials and sensitive information.