Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-30610

Опубликовано: 10 июн. 2022
Источник: nvd
CVSS3: 4.4
CVSS3: 4.5
CVSS2: 3.5
EPSS Низкий

Описание

IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.15.0 is vulnerable to reverse tabnabbing where it could allow a page linked to from within IBM Spectrum Copy Data Management to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 227363.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:ibm:spectrum_copy_data_management:*:*:*:*:*:*:*:*
Версия от 2.2.0.0 (включая) до 2.2.15.0 (включая)
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

EPSS

Процентиль: 29%
0.00104
Низкий

4.4 Medium

CVSS3

4.5 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 4.5
github
больше 3 лет назад

IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.15.0 is vulnerable to reverse tabnabbing where it could allow a page linked to from within IBM Spectrum Copy Data Management to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 227363.

EPSS

Процентиль: 29%
0.00104
Низкий

4.4 Medium

CVSS3

4.5 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-269