CWE
1021
Advisory Published
Updated

CVE-2022-36182

First published: Thu Oct 27 2022(Updated: )

Hashicorp Boundary v0.8.0 is vulnerable to Clickjacking which allow for the interception of login credentials, re-direction of users to malicious sites, or causing users to perform malicious actions on the site.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
HashiCorp Boundary<0.11.0

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is CVE-2022-36182?

    CVE-2022-36182 is a vulnerability in Hashicorp Boundary v0.8.0 that allows for clickjacking attacks.

  • How does CVE-2022-36182 impact Hashicorp Boundary?

    CVE-2022-36182 allows for the interception of login credentials, redirection to malicious sites, or the performance of malicious actions on the site.

  • What is the severity of CVE-2022-36182?

    CVE-2022-36182 has a severity level of medium with a severity value of 6.1.

  • How can I fix CVE-2022-36182 in Hashicorp Boundary?

    To fix CVE-2022-36182, upgrade Hashicorp Boundary to version 0.11.0 or higher.

  • What is clickjacking?

    Clickjacking is a type of attack where an attacker tricks a user into clicking on a malicious element disguised as a legitimate element on a webpage.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203