First published: Mon May 11 2020(Updated: )
IBM API Connect could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM API Connect | >=2018.4.1.0<=2018.4.1.10 | |
<=IBM API Connect V2018.4.1.0-2018.4.1.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4195 is a vulnerability in IBM API Connect V2018.4.1.0 through 2018.4.1.10 that could allow a remote attacker to hijack the clicking action of the victim.
CVE-2020-4195 has a severity score of 5.4, which is considered medium.
CVE-2020-4195 allows a remote attacker to hijack the victim's click actions by persuading them to visit a malicious website.
To protect yourself from CVE-2020-4195, make sure to keep your IBM API Connect software up to date with the latest security patches and be cautious when visiting unknown or suspicious websites.
You can find more information about CVE-2020-4195 on the IBM X-Force Exchange website and the IBM Support page.