Description
Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information.
Problem types
CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
Product status
Any version before IC 48.378.00
Any version before IC 48.383.00
Any version before 3.7.8.0
Any version before 3.8.3.0
Any version
References
www.dell.com/...ltiple-third-party-component-vulnerabilities
www.dell.com/...ltiple-third-party-component-vulnerabilities