CyberRota Analysis
AI-GeneratedIBM Financial Transaction Manager for RedHat OpenShift is vulnerable to an open redirect due to improper handling of the `Host` header in the PMP `HostHeaderFilter`. This flaw allows unauthenticated attackers to redirect authenticated users to malicious sites, potentially facilitating credential phishing attacks. Organizations utilizing this software should prioritize remediation to protect their users from phishing threats.
Original NVD Description
IBM Financial Transaction Manager (FTM) for RedHat OpenShift is vulnerable to open redirect in the PMP `HostHeaderFilter` (`HostHeaderFilter.java:151`). An unauthenticated attacker can craft a request with a manipulated `Host` header to redirect authenticated operators to attacker-controlled sites, enabling credential phishing.
Related CVEs
Other vulnerabilities affecting the same vendor(s)