CVE-2015-4668: Medium severity xceedium xsuite vulnerability
Published Sep 25, 2017
·Updated
Open redirect vulnerability in Xsuite 2.4.4.5 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirurl parameter.
Affected Software
2 affected components
Xceedium Xsuite=2.3.0
Xceedium Xsuite=2.4.3.0
Event History
Sep 25, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4668?
CVE-2015-4668 is categorized with a high severity due to its potential for exploitation in phishing attacks.
2
How do I fix CVE-2015-4668?
To fix CVE-2015-4668, upgrade to Xsuite version 2.4.4.6 or later where the vulnerability has been addressed.
3
What types of attacks can CVE-2015-4668 facilitate?
CVE-2015-4668 can facilitate phishing attacks by allowing attackers to redirect users to malicious websites.
4
Which versions of Xsuite are affected by CVE-2015-4668?
CVE-2015-4668 affects Xsuite versions 2.4.4.5 and earlier, including 2.3.0 and 2.4.3.0.
5
Who is vulnerable to exploitation of CVE-2015-4668?
Organizations using vulnerable versions of Xsuite are at risk of exploitation through CVE-2015-4668.