First published: Mon Jul 20 2015(Updated: )
IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to conduct clickjacking attacks via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Master Data Management | =9.1 | |
IBM InfoSphere Master Data Management | =10.1 | |
IBM InfoSphere Master Data Management | =11.0 | |
IBM InfoSphere Master Data Management | =11.3 | |
IBM InfoSphere Master Data Management | =11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1980 has a medium severity level as it allows remote authenticated users to conduct clickjacking attacks which may compromise user interactions.
To fix CVE-2015-1980, upgrade IBM InfoSphere Master Data Management to version 11.4 FP03 or later.
CVE-2015-1980 can be exploited to perform clickjacking attacks, tricking users into performing unintended actions.
CVE-2015-1980 affects IBM InfoSphere Master Data Management versions 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03.
Remote authenticated users of the affected versions of IBM InfoSphere Master Data Management are at risk from CVE-2015-1980.