🔙 목록으로 돌아가기

CVE-2014-9180: Eleanor CMS - Open Redirect

TitleEleanor CMS - Open Redirect
AuthorShankar Acharya
SeverityMedium
ImpactAttackers can redirect users to malicious sites for phishing attacks, malware distribution, or credential theft.
RemediationUpdate to the latest version of Eleanor CMS to fix the open redirect vulnerability.
CVSS Score5
EPSS Score0.0844
CVE IDCVE-2014-9180
CWE IDCWE-601
Shodan Queryhtml:"eleanor"http.html:"eleanor"cpe:"cpe:2.3:a:eleanor-cms:eleanor_cms"
Fofa Querybody="eleanor"
Tags cve2014 cve packetstorm eleanor cms redirect eleanor-cms vuln

🔍 Vulnerability Description

Open redirect vulnerability in go.php in Eleanor CMS allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the QUERY_STRING.

🌐 HTTP Request

GET /go.php?http://interact.sh HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; rv:139.0) Gecko/20100101 Firefox/139.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2014/CVE-2014-9180.yaml

🦈 Packet Capture: ⬇️ Download cve-2014-9180.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A