KodExplorer Open Redirect Vulnerability in User Login Page

Vulnerability

An open redirect vulnerability has been identified in KodExplorer version 4.52. This issue allows attackers to manipulate the 'link' parameter on the user login page, creating malicious URLs that can redirect users to arbitrary external websites after they authenticate.

Impact

Exploitation of this vulnerability could lead to open redirect, allowing users to be sent to potentially harmful external sites.

Reproduction

To reproduce this vulnerability, log into a KodExplorer 4.52 account and navigate to the login page. Once there, manipulate the 'link' parameter by inserting a malicious URL. After logging in, the user will be redirected to the specified external site.

Added: Dec 11, 2025, 10:23 PM
Updated: Dec 11, 2025, 10:23 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
0.6
exploitability
7.7
remediation
0.0
relevance
1.4
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.