Security Advisory

CVE-2015-7397

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-01-10 02:00:00
Last updated 2024-08-06 07:51:27
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

Multiple open redirect vulnerabilities in the Aurora starter store in IBM WebSphere Commerce 7.0 through Feature Pack 8 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the referrer parameter.