CVE-2025-0608
BaseFortify
Publication date: 2025-10-06
Last updated on: 2025-10-06
Assigner: Computer Emergency Response Team of the Republic of Turkey
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| logo_software_inc | logo_cloud | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-601 | The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an Open Redirect issue in Logo Software Inc.'s Logo Cloud product before version 2025.R6. It allows attackers to redirect users to untrusted external sites, which can be exploited for phishing attacks and forceful browsing.
How can this vulnerability impact me? :
The vulnerability can lead to phishing attacks where users are tricked into visiting malicious websites, potentially compromising their credentials or personal information. It also allows forceful browsing, which may enable unauthorized access to certain parts of the application.