CVE-2021-29827: IBM InfoSphere Information Server clickjacking
Published Dec 18, 2024
·Updated
IBM InfoSphere Information Server 11.7 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.
Affected Software
5 affected components
IBM InfoSphere Information Server
All of the following
IBM InfoSphere Information Server=11.7
Any of the following
IBM AIX
Linux Linux kernel
Microsoft Windows
Event History
Dec 18, 2024
CVE Published
via MITRE·11:44 PM
Data Sourced
via MITRE·11:44 PM
DescriptionSeverityWeakness
Dec 19, 2024
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-29827?
CVE-2021-29827 is classified as a medium severity vulnerability.
2
How do I fix CVE-2021-29827?
To remediate CVE-2021-29827, update IBM InfoSphere Information Server to the latest version provided by IBM.
3
What type of vulnerability is CVE-2021-29827?
CVE-2021-29827 is a Cross-Frame Scripting vulnerability.
4
Who is affected by CVE-2021-29827?
CVE-2021-29827 affects users of IBM InfoSphere Information Server version 11.7.
5
What can an attacker do with CVE-2021-29827?
An attacker can hijack the victim's click actions by persuading them to visit a malicious website.