IBM Spectrum Protect Client 8.1.7.0 through 8.1.9.1 (Linux and Windows), 8.1.9.0 trough 8.1.9.1 (AIX) and IBM Spectrum Protect for Space Management 8.1.7.0 through 8.1.9.1 (Linux), 8.1.9.0 through 8.1.9.1 (AIX) web user interfaces could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 179488.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/179488 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6221448 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
History
No history.
Information
Published : 2020-06-15 14:15
Updated : 2024-02-28 17:47
NVD link : CVE-2020-4406
Mitre link : CVE-2020-4406
CVE.ORG link : CVE-2020-4406
JSON object : View
Products Affected
ibm
- spectrum_protect_client
- spectrum_protect_for_space_management
- aix
linux
- linux_kernel
microsoft
- windows
CWE
CWE-1021
Improper Restriction of Rendered UI Layers or Frames