S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2019-1010290 Scanner

CVE-2019-1010290 scanner - Open Redirect vulnerability in Babel

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
3.4k
Times Used
continuous scan runs
4.3k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2019-1010290
6.1
CVSS

Babel: Multilingual site Babel All is affected by: Open Redirection. The impact is: Redirection to any URL, which is supplied to redirect.php in a "newurl" parameter. The component is: redirect.php. The attack vector is: The victim must open a link created by an attacker. Attacker may use any legitimate site using Babel to redirect user to a URL of his/her choosing.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
Babelby Babel: Multilingual site
All
Updated Aug 21, 2026View on NVD →
Detail

Babel is a multilingual website platform used for creating and managing global websites that support different languages. Its purpose is to streamline the process of translating a website's content and tailoring it to a specific audience by offering translation management tools and multilingual CMS widgets. With Babel, companies can enter the global market and engage with customers in their native language, providing a seamless user experience across different cultures.

CVE-2019-1010290 is a vulnerability detected in Babel, specifically in its component redirect.php, which involves an open redirection. This means that an attacker can manipulate a redirection URL by adding a "newurl" parameter, which allows them to redirect users to any URL of their choosing. This vulnerability can be exploited by attackers who trick victims into opening a link created by them, which can result in redirecting users to a phishing site, distributing malware, or stealing sensitive information.

Exploitation of CVE-2019-1010290 can lead to devastating consequences for both individuals and companies. Attackers can redirect users to malicious websites, which can lead to malware infections and compromise user data. In some cases, attackers can manipulate redirection URLs to create a convincing phishing attack, where users unknowingly provide sensitive data to attackers.

Thanks to the pro features of the s4e.io platform, those who read this article can quickly and easily learn about vulnerabilities in their digital assets by using the platform's vulnerability scanning tool. s4e.io offers comprehensive vulnerability scanning and penetration testing services to help businesses identify and fix vulnerabilities before they can be exploited by attackers. With s4e.io, businesses can stay on top of cybersecurity and protect their digital assets from potential threats.

 

REFERENCES

Solution Advice

To protect against this vulnerability, companies using Babel should take the following precautions:

  • Disable the redirect component in their Babel installation
  • Update their Babel software regularly to patch known vulnerabilities
  • Implement URL filtering to restrict specific domains that can be used for redirection
  • Train employees on how to detect and avoid phishing attacks
  • Deploy anti-malware and anti-virus software to prevent malware infections.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2019-1010290 scanner - Open Redirect vulnerability in Babel | S4E