Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vj43-qmpm-3qqp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

LedgerSMB does not sufficiently guard against being wrapped by other sites, making it vulnerable to 'clickjacking'. This allows an attacker to trick a targetted user to execute unintended actions.

LedgerSMB does not sufficiently guard against being wrapped by other sites, making it vulnerable to 'clickjacking'. This allows an attacker to trick a targetted user to execute unintended actions.

EPSS

Процентиль: 36%
0.00154
Низкий

Дефекты

CWE-1021

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 4 лет назад

LedgerSMB does not sufficiently guard against being wrapped by other sites, making it vulnerable to 'clickjacking'. This allows an attacker to trick a targetted user to execute unintended actions.

CVSS3: 5.9
nvd
больше 4 лет назад

LedgerSMB does not sufficiently guard against being wrapped by other sites, making it vulnerable to 'clickjacking'. This allows an attacker to trick a targetted user to execute unintended actions.

CVSS3: 5.9
debian
больше 4 лет назад

LedgerSMB does not sufficiently guard against being wrapped by other s ...

EPSS

Процентиль: 36%
0.00154
Низкий

Дефекты

CWE-1021