e107 0.6174 allows remote attackers to redirect users to other web sites via the download parameter in rate.php, which is used after a user submits a file download rating. NOTE: in the default installation, the e_BASE variable restricts the redirection to the same web site.
Name | Vendor | Start Version | End Version |
---|---|---|---|
E107 | E107 | 0.6174 (including) | 0.6174 (including) |