First published: Thu Oct 27 2022(Updated: )
Hashicorp Boundary v0.8.0 is vulnerable to Clickjacking which allow for the interception of login credentials, re-direction of users to malicious sites, or causing users to perform malicious actions on the site.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HashiCorp Boundary | <0.11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36182 is a vulnerability in Hashicorp Boundary v0.8.0 that allows for clickjacking attacks.
CVE-2022-36182 allows for the interception of login credentials, redirection to malicious sites, or the performance of malicious actions on the site.
CVE-2022-36182 has a severity level of medium with a severity value of 6.1.
To fix CVE-2022-36182, upgrade Hashicorp Boundary to version 0.11.0 or higher.
Clickjacking is a type of attack where an attacker tricks a user into clicking on a malicious element disguised as a legitimate element on a webpage.