CVE-2018-1853: Medium severity ibm storage protect backup-archive client vulnerability
IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 151014.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2018-1853?
CVE-2018-1853 is a vulnerability in IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) that could allow a remote attacker to hijack the clicking action of the victim.
How does CVE-2018-1853 work?
By persuading a victim to visit a malicious website, a remote attacker could exploit this vulnerability to hijack the victim's click actions.
Which versions of IBM Spectrum Protect are affected by CVE-2018-1853?
IBM Spectrum Protect versions 7.1 through 7.1.8.4 and versions 8.1 through 8.1.6.1 are affected by CVE-2018-1853.
What is the severity of CVE-2018-1853?
The severity of CVE-2018-1853 is medium (6.1).
How can I fix CVE-2018-1853?
Apply the necessary security patches or updates provided by IBM to fix CVE-2018-1853.