First published: Mon Apr 08 2019(Updated: )
IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 151014.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Backup-Archive Client | >=7.1.0.0<=7.1.8.4 | |
IBM Spectrum Protect Backup-Archive Client | >=8.1.0.0<=8.1.6.1 | |
Apple macOS | ||
HP HP-UX | ||
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
Oracle Solaris |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1853 is a vulnerability in IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) that could allow a remote attacker to hijack the clicking action of the victim.
By persuading a victim to visit a malicious website, a remote attacker could exploit this vulnerability to hijack the victim's click actions.
IBM Spectrum Protect versions 7.1 through 7.1.8.4 and versions 8.1 through 8.1.6.1 are affected by CVE-2018-1853.
The severity of CVE-2018-1853 is medium (6.1).
Apply the necessary security patches or updates provided by IBM to fix CVE-2018-1853.