CVE-2020-8430: Medium severity Stormshield Stormshield Network Security vulnerability
Stormshield Network Security 310 3.7.10 devices have an auth/lang.html?rurl= Open Redirect vulnerability on the captive portal. For example, the attacker can use rurl=//example.com instead of rurl=https://example.com in the query string.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-8430?
CVE-2020-8430 is an Open Redirect vulnerability found in Stormshield Network Security 310 3.7.10 devices.
How does the CVE-2020-8430 vulnerability affect Stormshield Network Security devices?
The CVE-2020-8430 vulnerability affects Stormshield Network Security devices by allowing an attacker to perform open redirects on the captive portal.
What is the severity of CVE-2020-8430?
The severity of CVE-2020-8430 is medium with a CVSS score of 6.1.
How can I fix the CVE-2020-8430 vulnerability?
To fix the CVE-2020-8430 vulnerability, it is recommended to update Stormshield Network Security devices to a version that is not affected.
Where can I find more information about the CVE-2020-8430 vulnerability?
You can find more information about the CVE-2020-8430 vulnerability on the Stormshield advisories website and the Digitemis blog.