Loading
An URL redirection to untrusted site (open redirect) vulnerability affecting 3DPassport in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to redirect users to an arbitrary website via a crafted URL.
Use CWE-601, 3ds vendor hub and 3dexperience product page to widen CVE-2024-6377 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-1997, CVE-2025-10553 and CVE-2025-10551 for nearby disclosures in the same product family.