PT-2019-16970 · Ibm · Ibm Smartcloud Analytics

Publicado

2019-11-22

·

Atualizado

2021-07-21

·

CVE-2019-4215

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM SmartCloud Analytics versions 1.3.1 through 1.3.5
Description The issue allows a remote attacker to hijack the clicking action of the victim. This can be achieved by persuading a victim to visit a malicious Web site, which could then exploit this issue to hijack the victim's click actions and possibly launch further attacks against the victim.
Recommendations For IBM SmartCloud Analytics versions 1.3.1 through 1.3.5, update to a version outside of the affected range to resolve the issue.

Correção

Clickjacking

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-4215

Produtos afetados

Ibm Smartcloud Analytics