CVE-2015-5354 describes an open redirect vulnerability in Novius OS 5.0.1 (Elche) that allows attackers to redirect users to arbitrary malicious websites via a crafted URL in the 'redirect' parameter during login. This medium-severity vulnerability, with a CVSS score of 5.8, could lead to phishing attacks by tricking users into visiting attacker-controlled sites. While not listed in CISA's KEV catalog, exploit code and Nuclei templates are publicly available, though there is minimal community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.0.1CPE matchmatch criteria | cpe:2.3:a:novius-os:novius_os:5.0.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.