Vulnerability Details CVE-2018-16174
Open redirect vulnerability in LearnPress prior to version 3.1.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.014
EPSS Ranking 70.1%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 5.8
Products affected by CVE-2018-16174
-
cpe:2.3:a:thimpress:learnpress:-
-
cpe:2.3:a:thimpress:learnpress:1.0
-
cpe:2.3:a:thimpress:learnpress:2.0.6
-
cpe:2.3:a:thimpress:learnpress:2.0.9
-
cpe:2.3:a:thimpress:learnpress:2.1.0
-
cpe:2.3:a:thimpress:learnpress:2.1.3
-
cpe:2.3:a:thimpress:learnpress:2.1.4
-
cpe:2.3:a:thimpress:learnpress:2.1.5.2
-
cpe:2.3:a:thimpress:learnpress:2.1.5.3
-
cpe:2.3:a:thimpress:learnpress:2.1.6
-
cpe:2.3:a:thimpress:learnpress:2.1.7
-
cpe:2.3:a:thimpress:learnpress:2.1.8
-
cpe:2.3:a:thimpress:learnpress:3.0.0