id: CVE-2024-37656 info: name: GnuBoard5 5.5.16 - Open Redirect author: 0x_Akoko severity: medium description: | Gnuboard5 5.5.16 contains an open redirect vulnerability caused by insufficient URL parameter verification in bbs/logout.php, letting remote attackers redirect users to arbitrary URLs, exploit requires crafted URL parameter. impact: | Remote attackers can redirect users to malicious sites, potentially leading to phishing or information theft. remediation: | Update to the latest version of Gnuboard5. reference: - https://github.com/gnuboard/gnuboard5/issues/318 - https://nvd.nist.gov/vuln/detail/CVE-2024-37656 classification: cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N cvss-score: 6.1 cve-id: CVE-2024-37656 epss-score: 0.00146 epss-percentile: 0.34667 cwe-id: CWE-601 cpe: cpe:2.3:a:sir:gnuboard:5.5.16:*:*:*:*:*:*:* metadata: verified: true max-request: 2 vendor: sir product: gnuboard shodan-query: html:"GnuBoard5" fofa-query: body:"GnuBoard5" tags: cve,cve2024,redirect,gnuboard5,vkev http: - method: GET path: - "{{BaseURL}}/gnuboard5/bbs/logout.php?url=/\\oast.pro" - "{{BaseURL}}/bbs/logout.php?url=/\\oast.pro" stop-at-first-match: true matchers-condition: and matchers: - type: regex part: header regex: - '(?m)^(?:Location\s*?:\s*)(?:https?://|//|/\\\\)?[a-zA-Z0-9._@-]*oast\.pro.*$' - type: status status: - 302 # digest: 4a0a0047304502201a061e6f8e6ea2e61f8f6552c3cf398c4036726c2f1f8da60ee24a6163da9e34022100c4fc02469ef805e6ce74bd9d109ee1cf27de25ac58b4b0a80da06964d158641b:922c64590222798bb761d5b6d8e72950