216.73.216.233

CVE-2025-23363

· Published 11/02/2025 11:15 · Modified 25/02/2025 17:15

Labels: CVE-2025-23363 2025-02-11CVE-2025-23363CWE-601[email protected]

Essential information

Published
11/02/2025 11:15
Modified
25/02/2025 17:15
Author
Creator
CVSS
7.4 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N

CVSS metrics

Description

A vulnerability has been identified in Teamcenter (All versions). The SSO login service of affected applications accepts user-controlled input that could specify a link to an external site. This could allow an attacker to redirect the legitimate user to an attacker-chosen URL to steal valid session data. For a successful exploit, the legitimate user must actively click on an attacker-crafted link.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References