Junglewise Threat Intelligence

CVE-2026-35472: LabRedesCefetRJ WeGIA open redirect in control.php

CVE-2026-35472 · Severity: medium · CVSS 6.1 · Published 2026-04-06

Technologies: LabRedesCefetRJ WeGIA. Vendors: LabRedesCefetRJ.

Executive brief

WeGIA, a web-based management platform for charitable institutions, contains a security flaw that allows attackers to redirect users to malicious websites. By tricking a user into clicking a specially crafted link that appears to belong to the trusted WeGIA domain, an attacker can send them to a fake login page or a site hosting malware. This type of attack is primarily used for credential theft and phishing, potentially compromising the accounts of staff or administrators.

Technical details

An open redirect vulnerability exists in WeGIA versions prior to 3.6.9 due to insufficient validation of the 'nextPage' GET parameter in the /WeGIA/controle/control.php endpoint. The flaw is specifically exploitable when the 'metodo' parameter is set to 'listarTodos' and 'nomeClasse' is set to 'EstoqueControle'. A remote, unauthenticated attacker can craft a URL that, when visited by a victim, redirects the browser to an arbitrary external domain. This occurs because the application blindly trusts the user-supplied URL in the redirection logic. The vulnerability has been addressed in version 3.6.9 by implementing proper validation of redirection targets.

Affected products

  • LabRedesCefetRJ WeGIA < 3.6.9

Timeline

  • 2026-04-02: advisory: Vendor advisory published on GitHub
  • 2026-04-06: disclosed: CVE published to NVD
  • 2026-04-06: patched: Vulnerability fixed in version 3.6.9

References

Related threats