Securin Zero-Days

CVE-2020-14446 – Open Redirect in WSO2 Product

Severity:Medium

Vendor

WSO2

Affected Product

WSO2 IS as Key Manager 5.9.0 or earlier, WSO2 Identity Server 5.9.0 or earlier

CVE

CVE-2020-14446

Securin ID

2020-CSW-06-1044

Status

Fixed

Date

February 10, 2020

Description

Client-side open redirect arises when an application incorporates user-controllable data into the target of a redirection in an unsafe way. XSS payload is allowed to redirect the user to the external domain in the product WSO2 Identity Server version 5.9.0.

Proof of Concept (POC):

The following vulnerability was tested on WSO2 Identity Server Manager version 5.9.0 Product.

Issue 01: Client-side URL Redirection.

Figure 01: Navigating to the Policy Administration and Clicking the Add New Entitlement Policy Link.