Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-71531
HistoryJul 28, 2021 - 12:00 a.m.

IBM Sterling Connect Clickjacking Vulnerability

2021-07-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.001 Low

EPSS

Percentile

28.9%

IBM Sterling Connect: Direct is a file-based peer-to-peer file transfer solution from IBM, U.S.A. A clickjacking vulnerability exists in IBM Sterling Connec versions 1.4.1.1 and 1.5.0.2, which stems from a program that does not adequately protect HTML iframes. A remote attacker could exploit The vulnerability hijacks the victim’s click action and could launch further attacks against the victim.

0.001 Low

EPSS

Percentile

28.9%

Related for CNVD-2021-71531