CVE-2020-8143
Last modified
CVE-2020-8143 is a medium-severity vulnerability rated 6.1/10 on the CVSS scale. An Open Redirect vulnerability was discovered in Revive Adserver version < 5.0.5 and reported by HackerOne user hoangn144. A remote attacker could trick logged-in users to open a specifically crafted link and have them redirected to any destination.The CSRF protection of the “/www/admin/*-modify.php” could be skipped if no meaningful parameter was sent. EPSS estimates a 70.39% chance of exploitation in the next 30 days.
Description
An Open Redirect vulnerability was discovered in Revive Adserver version < 5.0.5 and reported by HackerOne user hoangn144. A remote attacker could trick logged-in users to open a specifically crafted link and have them redirected to any destination.The CSRF protection of the “/www/admin/*-modify.php” could be skipped if no meaningful parameter was sent. No action was performed, but the user was still redirected to the target page, specified via the “returnurl” GET parameter.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Revive-Adserver | Revive Adserver | < 5.0.5 |
References
- https://hackerone.com/reports/794144Exploit, Third Party Advisory
- https://www.revive-adserver.com/security/revive-sa-2020-002/Vendor Advisory
- https://hackerone.com/reports/794144Exploit, Third Party Advisory
- https://www.revive-adserver.com/security/revive-sa-2020-002/Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-8143?
How severe is CVE-2020-8143?
How do I fix CVE-2020-8143?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-8137Code injection vulnerability in blamer 1.0.0 and earlier may…9.8
- CVE-2020-8138A missing check for IPv4 nested inside IPv6 in Nextcloud ser…6.5
- CVE-2020-8139A missing access control check in Nextcloud Server < 18.0.1,…6.5
- CVE-2020-8140A code injection in Nextcloud Desktop Client 2.6.2 for macOS…6.7
- CVE-2020-8141The dot package v1.1.2 uses Function() to compile templates.…8.8
- CVE-2020-8142A security restriction bypass vulnerability has been discove…6.8
- CVE-2020-8144The UniFi Video Server v3.9.3 and prior (for Windows 7/8/10 …8.4
- CVE-2020-8145The UniFi Video Server (Windows) web interface configuration…6.5
- CVE-2020-8146In UniFi Video v3.10.1 (for Windows 7/8/10 x64) there is a L…7.8
- CVE-2020-8147Flaw in input validation in npm package utils-extend version…9.8
- CVE-2020-8148UniFi Cloud Key firmware < 1.1.6 contains a vulnerability th…5.3
- CVE-2020-8149Lack of output sanitization allowed an attack to execute arb…9.8
Are you affected by CVE-2020-8143?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
