CVE-2017-16652
Last modified
CVE-2017-16652 is a vulnerability of currently unknown severity. An issue was discovered in Symfony 2.7.x before 2.7.38, 2.8.x before 2.8.31, 3.2.x before 3.2.14, and 3.3.x before 3.3.13. DefaultAuthenticationSuccessHandler or DefaultAuthenticationFailureHandler takes the content of the _target_path parameter and generates a redirect response, but no check is performed on the path, which could be an absolute URL to an external domain. EPSS estimates a 0.95% chance of exploitation in the next 30 days.
Description
An issue was discovered in Symfony 2.7.x before 2.7.38, 2.8.x before 2.8.31, 3.2.x before 3.2.14, and 3.3.x before 3.3.13. DefaultAuthenticationSuccessHandler or DefaultAuthenticationFailureHandler takes the content of the _target_path parameter and generates a redirect response, but no check is performed on the path, which could be an absolute URL to an external domain. This Open redirect vulnerability can be exploited for example to mount effective phishing attacks.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sensiolabs | Symfony | > 2.7.0, < 2.7.38 |
| Sensiolabs | Symfony | > 2.8.0, < 2.8.31 |
| Sensiolabs | Symfony | > 3.2.0, < 3.2.14 |
| Sensiolabs | Symfony | >= 3.3.0, < 3.3.13 |
| Debian | Debian Linux | 8.0 |
References
- https://lists.debian.org/debian-lts-announce/2019/03/msg00009.htmlThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2019/03/msg00009.htmlThird Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-16652?
How severe is CVE-2017-16652?
How do I fix CVE-2017-16652?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-16647drivers/net/usb/asix_devices.c in the Linux kernel through 4…
- CVE-2017-16648The dvb_frontend_free function in drivers/media/dvb-core/dvb…
- CVE-2017-16649The usbnet_generic_cdc_bind function in drivers/net/usb/cdc_…
- CVE-2017-1665IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 uses weak…
- CVE-2017-16650The qmi_wwan_bind function in drivers/net/usb/qmi_wwan.c in …
- CVE-2017-16651Roundcube Webmail before 1.1.10, 1.2.x before 1.2.7, and 1.3…7.8
- CVE-2017-16653An issue was discovered in Symfony before 2.7.38, 2.8.31, 3.…
- CVE-2017-16654An issue was discovered in Symfony before 2.7.38, 2.8.31, 3.…
- CVE-2017-16659The Gentoo mail-filter/assp package 1.9.8.13030 and earlier …7.8
- CVE-2017-1666IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 is vulner…
- CVE-2017-16660Cacti 1.1.27 allows remote authenticated administrators to c…
- CVE-2017-16661Cacti 1.1.27 allows remote authenticated administrators to r…
Are you affected by CVE-2017-16652?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
