CVE-2018-6324: Medium severity F-Secure Radar vulnerability
Published Feb 16, 2018
·Updated
F-Secure Radar (on-premises) before 2018-02-15 has an Unvalidated Redirect via the ReturnUrl parameter that triggers upon a user login.
Affected Software
1 affected component
F-Secure Radar<=3.9.1
Event History
Feb 16, 2018
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Data Sourced
via NVD·04:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6324?
CVE-2018-6324 is classified as a medium severity vulnerability due to potential security risks associated with unvalidated redirects.
2
How do I fix CVE-2018-6324?
To fix CVE-2018-6324, update F-Secure Radar to version 3.9.2 or later, which addresses the unvalidated redirect issue.
3
What impact does CVE-2018-6324 have on user security?
CVE-2018-6324 can lead to phishing attacks by allowing attackers to redirect users to malicious sites after login.
4
Which versions of F-Secure Radar are affected by CVE-2018-6324?
F-Secure Radar versions prior to 3.9.2 are affected by CVE-2018-6324.
5
Who is at risk for CVE-2018-6324?
Organizations using versions of F-Secure Radar before 3.9.2 are at risk of exploitation through unvalidated redirects.