CVE-2014-9180: Eleanor-CMS Eleanor CMS

Medium severity, CVSS 5.0. EPSS: 4.6% chance of exploitation in the next 30 days.

Open redirect vulnerability in go.php in Eleanor CMS allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the QUERY_STRING.

Affected products

  • Eleanor-CMS Eleanor CMS: affected versions not specified

Published 2014-12-02. Last modified 2026-06-17.