Description
Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.
Remediation
References
Related Vulnerabilities
WebLogic CVE-2018-3248 Vulnerability (CVE-2018-3248)
WordPress Plugin VideoWhisper Video Presentation 'c_status.php' SQL Injection (1.1)
WordPress Plugin Auto Featured Image Arbitrary File Upload (1.2)
WordPress Plugin Slider by 10Web-Responsive Image Slider Cross-Site Request Forgery (1.2.22)
WordPress Plugin Limit Login Attempts Reloaded Cross-Site Scripting (2.7.0)