CVE-2019-20479

A flaw was found in mod_auth_openidc before version 2.4.1. An open redirect issue exists in URLs with a slash and backslash at the beginning.
Configurations

Configuration 1

cpe:2.3:a:zmartzone:mod_auth_openidc:*:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*

Information

Published : 2020-02-20 06:15

Updated : 2022-01-01 07:39


NVD link : CVE-2019-20479

Mitre link : CVE-2019-20479

Products Affected
No products.
CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')