Summer Pearl Group Vacation Rental Management Platform Host Header Open Redirect Vulnerability
Vulnerability
A host header open redirect vulnerability has been identified in the Summer Pearl Group Vacation Rental Management Platform, versions prior to 1.0.1. This vulnerability arises from an unknown processing issue in the Header Handler component, where manipulated host header arguments can lead to unauthorized redirections. Such redirections can be exploited for phishing attacks by directing users to malicious domains. The vulnerability can be exploited remotely and requires some user interaction.
Impact
Exploitation of this vulnerability allows for open redirect attacks, where users can be redirected to external sites of the attacker's choice, potentially leading to phishing attempts.
Remediation
Users are advised to upgrade to Summer Pearl Group Vacation Rental Management Platform version 1.0.2, which addresses this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
