Grimag <= 1.1.0 - Open Redirection
highThe Grimag theme for WordPress is vulnerable to Open Redirect in versions up to, and including, 1.1.0 via the 'go.php' file. This makes it possible for unauthenticated attackers to redirect users to a potentially malicious website where they can gather sensitive user information for future attacks.
- CVSS:
- 7.2
- Affected:
- up to 1.1.0
- Fixed in:
- 1.1.1
- Disclosed:
- Jun 2, 2014