2016
03.02

perfact::mpa Open Redirect

The SySS GmbH found out that the web application perfact:mpa accepts user-controlled input via the URL parameter “redir” that can be used to redirect victims to an arbitrary site which simplifies so-called phishing attacks.

No Comment.

Add Your Comment

You must be logged in to post a comment.