Open redirect vulnerability in the Services single sign-on server helper (services_sso_server_helper) module for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified parameters.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2215
Reference (s):
- BID:72803
- URL: http://www.securityfocus.com/bid/72803
- https://www.drupal.org/node/2437965

