First published: Sun Oct 05 2014(Updated: )
HP Systems Insight Manager (SIM) before 7.4 allows remote attackers to conduct clickjacking attacks via unknown vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Systems Insight Manager | <=7.3 | |
HP Systems Insight Manager | =7.0 | |
HP Systems Insight Manager | =7.1 | |
HP Systems Insight Manager | =7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-2645 is classified as a medium severity vulnerability that allows clickjacking attacks.
To fix CVE-2014-2645, upgrade HP Systems Insight Manager to version 7.4 or later.
Clickjacking attacks exploit the vulnerability by tricking users into clicking on hidden elements of a web page.
CVE-2014-2645 affects HP Systems Insight Manager versions 7.0 to 7.3.
Yes, CVE-2014-2645 can be exploited remotely by attackers to conduct clickjacking attacks.