Open redirect vulnerability in the 3PI Manager in Ericsson Drutt Mobile Service Delivery Platform (MSDP) 4, 5, and 6 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter to jsp/start-3pi-manager.jsp.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Drutt_mobile_service_delivery_platform | Ericsson | 4.0 (including) | 4.0 (including) |
Drutt_mobile_service_delivery_platform | Ericsson | 5.0 (including) | 5.0 (including) |
Drutt_mobile_service_delivery_platform | Ericsson | 6.0 (including) | 6.0 (including) |