MEDIUM🇵🇱 Wersja polska

CVE-2025-5183

CVSS 5.1v4.0pub. 2025-05-26upd. 2025-06-03

A vulnerability was found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 and classified as problematic. This issue affects some unknown processing of the component Header Handler. The manipulation of the argument Host leads to open redirect. The attack may be initiated remotely. Upgrading to version 1.0.2 is able to address this issue. It is recommended to upgrade the affected component.

CVSS Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • Summerpearlgroup Vacation Rental Management Platform

    APP
    Summerpearlgroup
    < 1.0.2
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2025-63561HIGH7.5same product

Summer Pearl Group Vacation Rental Management Platform prior to 1.0.2 is susceptible to a Slowloris-style Deni...

CVE-2025-63562MEDIUM6.3same product

Summer Pearl Group Vacation Rental Management Platform prior to v1.0.2 suffers from insufficient server-side a...

CVE-2025-63563MEDIUM6.5same product

Summer Pearl Group Vacation Rental Management Platform prior to v1.0.2 does not properly invalidate active use...

CVE-2025-5181MEDIUM5.1same product

A vulnerability, which was classified as problematic, was found in Summer Pearl Group Vacation Rental Manageme...

CVE-2025-5182MEDIUM5.3same product

A vulnerability has been found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 and class...