First published: Thu Aug 20 2020(Updated: )
IBM Guardium Activity Insights could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Guardium Insights | =2.0.1 | |
Linux Linux kernel | ||
<=2.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4165 is a vulnerability in IBM Guardium Activity Insights that could allow a remote attacker to hijack the clicking action of the victim.
By persuading a victim to visit a malicious website, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks.
CVE-2020-4165 has a severity rating of 5.4 (medium).
IBM Security Guardium Insights version 2.0.1 is affected by CVE-2020-4165.
To fix CVE-2020-4165, apply the necessary patches provided by IBM.