Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-44vm-qvr4-f42v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM SmartCloud Analytics 1.3.1 through 1.3.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 159186.

IBM SmartCloud Analytics 1.3.1 through 1.3.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 159186.

EPSS

Процентиль: 52%
0.00293
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.1
nvd
около 6 лет назад

IBM SmartCloud Analytics 1.3.1 through 1.3.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 159186.

EPSS

Процентиль: 52%
0.00293
Низкий

Дефекты

CWE-20