First published: Thu Feb 15 2018(Updated: )
A Remote click jacking vulnerability in HPE Diagnostics version 9.24 IP1, 9.26 , 9.26IP1 was found.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Diagnostics | =9.24-ip1 | |
HP Diagnostics | =9.26 | |
HP Diagnostics | =9.26-ip1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8521 is classified as a remote clickjacking vulnerability, which poses a significant risk to affected versions of HPE Diagnostics.
To mitigate CVE-2016-8521, upgrade to a version of HPE Diagnostics that is not affected, such as versions 9.24 IP2 or later.
CVE-2016-8521 affects HPE Diagnostics versions 9.24 IP1, 9.26, and 9.26 IP1.
Exploitation of CVE-2016-8521 can allow attackers to trick users into clicking on malicious links, potentially leading to unauthorized actions.
Currently, there are no officially documented workarounds for CVE-2016-8521, so upgrading to a patched version is recommended.