Multiple open redirect vulnerabilities in the Aurora starter store in IBM WebSphere Commerce 7.0 through Feature Pack 8 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the referrer parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Websphere_commerce | Ibm | 7.0 (including) | 7.0 (including) |