RSS   Vulnerabilities for 'Security monkey'   RSS

2017-03-26
 
CVE-2017-7266

 

 
Netflix Security Monkey before 0.8.0 has an Open Redirect. The logout functionality accepted the "next" parameter which then redirects to any domain irrespective of the Host header.

 

 >>> Vendor: Netflix 6 Products
Security monkey
Titus
Dispatch
Chaos monkey
Hollow
Priam


Copyright 2024, cxsecurity.com

 

Back to Top