Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.
Software | From | Fixed in |
---|---|---|
fedoraproject / fedora | 8 | 8.x |
fedoraproject / fedora | 9 | 9.x |
edgewall / trac | - | 0.10.5 |