Required CVE Record Information
Description
Multiple open redirect vulnerabilities in OpenText Documentum Webtop 6.8.0160.0073 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a (1) URL in the startat parameter to xda/help/en/default.htm or (2) /%09/ (slash encoded horizontal tab slash) followed by a domain in the redirectUrl parameter to xda/component/virtuallinkconnect.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- seclists.org: 20170925 OpenText Documentum Administrator and Webtop - Open Redirection mailing-listx_transferred
- https://knowledge.opentext.com/knowledge/llisapi.dll/Open/68982774 x_transferred