PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2008-2052

6.1
CVSS
Description

Open redirect vulnerability in redirect.php in Bitrix Site Manager 6.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the goto parameter.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Updated Sep 18, 2026View on NVD →
S4E scanner

Bitrix Site Management 2.x - Open Redirect

Bitrix Site Management 2.x contains an open redirect vulnerability allowing attackers to redirect users to arbitrary external sites via crafted redirect parameters. References: https://packetstormsecurity.com/files/151955/1C-Bitrix-Site-Management-Russia-2.0-Open-Redirection.html https://holisticinfosec.blogspot.com/2008/07/bitrix-open-redirect-vulnerability.html https://nvd.nist.gov/vuln/detail/CVE-2008-2052 Remediation: Upgrade Bitrix to a patched version and validate redirect targets against an allowlist.

Used 2.2k times · domain, subdomain, ipv4

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →