CVE-2019-14223
Published
CVSS v3
6.1
MEDIUM
CVSS v2
5.8
MEDIUM
Affected
1
PROJECT
Description
An issue was discovered in Alfresco Community Edition versions below 5.2.6, 6.0.N and 6.1.N. The Alfresco Share application is vulnerable to an Open Redirect attack via a crafted POST request. By manipulating the POST parameters, an attacker can redirect a victim to a malicious website over any protocol the attacker desires (e.g.,http, https, ftp, smb, etc.).