PT-2017-13610 · Ibm · Ibm Tririga

Publicado

2017-12-07

·

Atualizado

2017-12-19

·

CVE-2017-1465

CVSS v3.1

5.4

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM TRIRIGA versions 3.2 through 3.5
Description The issue allows a remote attacker to hijack the clicking action of the victim. This can be achieved by persuading a victim to visit a malicious Web site, which could then exploit this issue to hijack the victim's click actions and possibly launch further attacks against the victim.
Recommendations For versions 3.2 through 3.5, update to a version that includes a fix for this issue to prevent remote attackers from hijacking the victim's click actions.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-1465

Produtos afetados

Ibm Tririga