IBM Spectrum Protect Client 8.1.7.0 through 8.1.9.1 (Linux and Windows), 8.1.9.0 trough 8.1.9.1 (AIX) and IBM Spectrum Protect for Space Management 8.1.7.0 through 8.1.9.1 (Linux), 8.1.9.0 through 8.1.9.1 (AIX) web user interfaces could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 179488.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/6221448 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/179488 | VDB Entry Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Information
Published : 2020-06-15 07:15
Updated : 2020-06-18 13:35
NVD link : CVE-2020-4406
Mitre link : CVE-2020-4406
JSON object : View
CWE
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
Products Affected
microsoft
- windows
ibm
- aix
- spectrum_protect_client
- spectrum_protect_for_space_management
linux
- linux_kernel