Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-22348

Опубликовано: 14 мар. 2022
Источник: nvd
CVSS3: 4
CVSS3: 2.4
CVSS2: 3.5
EPSS Низкий

Описание

IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.13.xxx is vulnerable to reverse tabnabbing where it could allow a page linked to from within Operations Center to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 220139.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ibm:spectrum_protect_operations_center:*:*:*:*:*:*:*:*
Версия от 8.1.0.000 (включая) до 8.1.14.000 (исключая)

EPSS

Процентиль: 13%
0.00044
Низкий

4 Medium

CVSS3

2.4 Low

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 2.4
github
почти 4 года назад

IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.13.xxx is vulnerable to reverse tabnabbing where it could allow a page linked to from within Operations Center to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 220139.

EPSS

Процентиль: 13%
0.00044
Низкий

4 Medium

CVSS3

2.4 Low

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-352