CVE-2021-39054: Medium severity ibm storage copy data management vulnerability
IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 214525.
Other sources
IBM Spectrum Copy Data Management could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-39054.
What is the title of this vulnerability?
The title of this vulnerability is 'IBM Spectrum Copy Data Management could allow a remote attacker to hijack the clicking action of the…'
What is the severity level of CVE-2021-39054?
The severity level of CVE-2021-39054 is medium with a severity value of 5.4.
Which software versions are affected by this vulnerability?
IBM Spectrum Copy Data Management versions up to and including 2.2.13 are affected by this vulnerability.
How can an attacker exploit this vulnerability?
By persuading a victim to visit a malicious website, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks.