First published: Mon Feb 03 2020(Updated: )
IBM Security Directory Server 6.4.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 165950.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Directory Server | >=6.4.0.0<6.4.0.20 | |
<=6.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-4548 is medium with a severity value of 6.1.
IBM Security Directory Server versions 6.4.0 and below are affected by CVE-2019-4548.
A remote attacker can exploit CVE-2019-4548 by persuading a victim to visit a malicious website and hijack their click actions.
To fix CVE-2019-4548, upgrade IBM Security Directory Server to version 6.4.0.21 or apply the necessary patches.