AEX Web Application Vulnerable to Clickjacking Attacks
CVE-2024-30109
3.7LOW
What is CVE-2024-30109?
HCL DRYiCE AEX is impacted by a lack of clickjacking protection in the AEX web application. An attacker can use multiple transparent or opaque layers to trick a user into clicking on a button or link on another page than the one intended.
Affected Version(s)
DRYiCE AEX 10