CVE-2015-2167: Medium severity ericsson drutt mobile service delivery platform vulnerability
Open redirect vulnerability in the 3PI Manager in Ericsson Drutt Mobile Service Delivery Platform (MSDP) 4, 5, and 6 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter to jsp/start-3pi-manager.jsp.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2167?
CVE-2015-2167 is classified as a medium severity vulnerability due to its potential for phishing and redirect attacks.
How do I fix CVE-2015-2167?
To mitigate CVE-2015-2167, update the Ericsson Drutt Mobile Service Delivery Platform to a patched version that addresses the open redirect flaw.
What software versions are affected by CVE-2015-2167?
CVE-2015-2167 affects Ericsson Drutt Mobile Service Delivery Platform versions 4.0, 5.0, and 6.0.
What types of attacks can be executed using CVE-2015-2167?
CVE-2015-2167 can be exploited to conduct phishing attacks by redirecting users to malicious websites.
Who can exploit CVE-2015-2167?
CVE-2015-2167 can be exploited by remote attackers who can manipulate URLs in the specified parameter.