Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qv6f-r8hc-x3jr

Опубликовано: 11 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.5

Описание

IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.15.0 is vulnerable to reverse tabnabbing where it could allow a page linked to from within IBM Spectrum Copy Data Management to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 227363.

IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.15.0 is vulnerable to reverse tabnabbing where it could allow a page linked to from within IBM Spectrum Copy Data Management to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 227363.

EPSS

Процентиль: 29%
0.00104
Низкий

4.5 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 4.5
nvd
больше 3 лет назад

IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.15.0 is vulnerable to reverse tabnabbing where it could allow a page linked to from within IBM Spectrum Copy Data Management to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 227363.

EPSS

Процентиль: 29%
0.00104
Низкий

4.5 Medium

CVSS3

Дефекты

CWE-269