CVE-2017-15700

CVE-2017-15700

A flaw in the org.apache.sling.auth.core.AuthUtil#isRedirectValid method in Apache Sling Authentication Service 1.4.0 allows an attacker, through the Sling login form, to trick a victim to send over their credentials.

Source: CVE-2017-15700

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다