Clickjacking Vulnerability in IBM WebSphere eXtreme Scale 8.6 Admin Console
CVE-2019-4109

6.1MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
30 September 2019

Summary

The IBM WebSphere eXtreme Scale 8.6 Admin Console is susceptible to a clickjacking vulnerability that may allow remote attackers to manipulate the actions of authenticated users. By luring a victim to a malicious website, attackers could potentially hijack click actions without the victim's knowledge, thereby exposing them to further threats. This vulnerability underscores the importance of secure web practices to prevent unauthorized access and actions.

Affected Version(s)

WebSphere eXtreme Scale 8.6

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.