Dot CMS URL Redirection to Untrusted Site (Open Redirect) Vulnerability - CVE-2018-17422 - Vulnerability Database

Dot CMS URL Redirection to Untrusted Site (Open Redirect) Vulnerability - CVE-2018-17422

Medium
Reference: CVE-2018-17422
Title: Dot CMS URL Redirection to Untrusted Site (Open Redirect) Vulnerability
Overview:

dotCMS before 5.0.2 has open redirects via the html/common/forward_js.jsp FORWARD_URL parameter or the html/portlet/ext/common/page_preview_popup.jsp hostname parameter.