Description
KodExplorer 4.52 contains an open redirect vulnerability in the user login page that allows attackers to manipulate the 'link' parameter. Attackers can craft malicious URLs in the link parameter to redirect users to arbitrary external websites after authentication.
Problem types
CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
Product status
4.52
Credits
Rahad Chowdhury
References
www.exploit-db.com/exploits/52245 (ExploitDB-52245)
kodcloud.com/ (KodExplorer Homepage)
github.com/kalcaddle/KodExplorer/releases/tag/4.52 (KodExplorer Release Page)
www.vulncheck.com/...t-vulnerability-via-user-login-endpoint (VulnCheck Advisory: KodExplorer 4.52 Open Redirect Vulnerability via User Login Endpoint)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.