Ad Manager <= 1.1.2 - Open Redirection
mediumOpen redirect vulnerability in track-click.php in the Ad-Manager plugin 1.1.2 for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the out parameter.
- CVSS:
- 6.5
- Affected:
- up to 1.1.2
- Fix:
- No patched version reported
- Disclosed:
- Nov 26, 2014