First published: Mon May 29 2017(Updated: )
Open Redirect vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Tuning Manager before 8.5.2-00 allows remote attackers to redirect authenticated users to arbitrary web sites.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi Device Manager | <=8.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9296 has a medium severity rating due to its potential for exploitation through redirection to malicious websites.
To fix CVE-2017-9296, upgrade to Hitachi Device Manager version 8.5.2-01 or later.
CVE-2017-9296 can enable remote attackers to conduct phishing attacks and redirect users to malicious sites.
CVE-2017-9296 affects Hitachi Device Manager versions prior to 8.5.2-01 and Hitachi Tuning Manager versions prior to 8.5.2-00.
Yes, exploitation of CVE-2017-9296 requires the attacker to target authenticated users.