CVE-2014-6174IBM Websphere Application Server vulnerability

CWE-2543 documents3 sources
Severity
4.3MEDIUMNVD
EPSS
0.2%
top 55.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 18
Latest updateMay 17

Description

IBM WebSphere Application Server 7.x before 7.0.0.37, 8.0.x before 8.0.0.10, and 8.5.x before 8.5.5.4 allows remote attackers to conduct clickjacking attacks via a crafted web site.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-fcj2-jp28-c32m: IBM WebSphere Application Server 72022-05-17
CVEList
CVE-2014-6174: IBM WebSphere Application Server 72014-12-18
CVE-2014-6174 — IBM vulnerability | cvebase