IBM InfoSphere Enterprise Records 4.5.1 before 4.5.1.7-IER-IF001 and Enterprise Records 5.1.1 before 5.1.1.1-IER-IF003 do not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21662911 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/88596 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2014-03-06 11:55
Updated : 2024-02-04 18:35
NVD link : CVE-2013-6315
Mitre link : CVE-2013-6315
CVE.ORG link : CVE-2013-6315
JSON object : View
Products Affected
ibm
- infosphere_enterprise_records
- enterprise_records
CWE
CWE-20
Improper Input Validation