perfact::mpa Open Redirect

Discussion in 'News Aggregator' started by Packet Storm, 1 Mar 2016.

  1. Packet Storm

    Packet Storm Guest

    The SySS GmbH found out that the web application perfact:mpa accepts user-controlled input via the URL parameter "redir" that can be used to redirect victims to an arbitrary site which simplifies so-called phishing attacks.

    Continue reading...
     

Share This Page

Loading...