PSIRT-147: GridTime™ 3000 GNSS Time Server Open Redirect
Vulnerability Details
Open Redirect Vulnerability in Password Reset Submission in GridTime™ 3000 GNSS Time Server
An open redirect vulnerability in the GridTime 3000 (password reset form) allows redirection of an arbitrary URL when submitting the password change form, allowing for redirection to an uncontrolled URL. This issue affects GridTime 3000: from 1.0r0.03 before 1.2r0.0.
{"SalesForceSecurePath":"https://microchip.my.salesforce-scrt.com","EmbeddedServiceName":"Messaging_For_Microchip","SalesForcePath":"https://microchip.my.site.com/ESWMessagingForMicrochi1755319480924","AgentAvailableHeader":"No problem. Chat with our engineering experts or schedule a call that's convenient for you.","ScheduleCallUrl":"https://microchip.my.site.com/schedulemeetingportal/s/","SalesforceOrgId":"00Do0000000KAkK","JsUrl":"https://microchip.my.site.com/ESWMessagingForMicrochi1755319480924/assets/js/bootstrap.min.js"}