Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-89j4-j5mp-mxwm

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to trick the interface user/admin into interacting with the application in an unintended way when the product does not implement restrictions on the ability to render within frames on external addresses. Affected Products: Conext™ ComBox (All Versions)

A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to trick the interface user/admin into interacting with the application in an unintended way when the product does not implement restrictions on the ability to render within frames on external addresses. Affected Products: Conext™ ComBox (All Versions)

EPSS

Процентиль: 48%
0.00248
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1021

Связанные уязвимости

CVSS3: 6.5
nvd
около 3 лет назад

A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to trick the interface user/admin into interacting with the application in an unintended way when the product does not implement restrictions on the ability to render within frames on external addresses. Affected Products: Conext™ ComBox (All Versions)

CVSS3: 6.5
fstec
больше 3 лет назад

Уязвимость микропрограммного обеспечения устройства связи и мониторинга Schneider Electric Conext ComBox, связанная с неверным ограничением визуализируемых слоев или фреймов пользовательского интерфейса, позволяющая нарушителю оказать воздействие на целостность данных

EPSS

Процентиль: 48%
0.00248
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1021