S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2022-32444 Scanner

Detects 'Open Redirect' vulnerability in u5cms affects v. 8.3.5.

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.6k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-32444
6.1
CVSS

An issue was discovered in u5cms verion 8.3.5 There is a URL redirection vulnerability that can cause a user's browser to be redirected to another site via /loginsave.php.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

The u5CMS, also known as the Ultimate 5 Content Management System, is a web-based platform that allows website owners to easily manage their website content. It is designed to be user-friendly and comes equipped with a range of tools and features that make it easier to manage website content without the need for technical expertise.

Recently, a vulnerability has been discovered in u5cms version 8.3.5, identified as CVE-2022-32444. This vulnerability relates to a URL redirection flaw that hackers can exploit by redirecting users' browsers to a different website through /loginsave.php. This exploit can cause serious damage and compromise website integrity and security.

What's alarming about this vulnerability is that it could allow malicious actors to gain unauthorized access to a website, enabling them to steal sensitive information, inject malicious code or even take control of the website entirely. They can redirect users' browser sessions and trick them into giving away confidential information willingly.

If website owners want to stay one step ahead of vulnerabilities, consider using a security solution provider like s4e.io. By subscribing to their services, website owners will have immediate updates of vulnerabilities and security emerging trends of their digital assets, allowing them to proactively secure their online environments.  In today's digital age, it is essential to be proactive since neglecting cybersecurity measures might lead to devastating consequences down the line. By taking precautions now, website owners can help safeguard their digital assets from security breaches.

 

REFERENCES

Solution Advice

Thankfully, there are a number of precautions that can be taken to protect against this vulnerability. Here are some steps that website owners can take to secure their website:

  • The first measure is to update to a more recent version of u5cms system, such as 8.3.5.1. This patched version has corrected this issue and provided a secure version for all users.
  • Regularly monitoring the site, utilizing detection processes and conducting regular penetration testing to and identify any potential vulnerabilities.
  • Limiting access to sensitive sections of the website, such as the admin, to those with approved access capabilities.
  • Ensuring all website plugins are up-to-date and have no known vulnerabilities.
  • Utilizing security solutions like firewalls and DDoS protection to limit malicious traffic from reaching your site.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.