CVE-2020-4490
published 2020-05-29CVE-2020-4490: IBM Business Automation Workflow 18 and 19, and IBM Business Process Manager 8.0, 8.5, and 8.6 could allow a remote attacker to bypass security restrictions…
PriorityP427medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
EPSS
0.86%
56.7th percentile
IBM Business Automation Workflow 18 and 19, and IBM Business Process Manager 8.0, 8.5, and 8.6 could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability and redirect a vitcim to a phishing site. IBM X-Force ID: 181989
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | business_automation_workflow | — | — |
| ibm | business_automation_workflow | — | — |
| ibm | business_process_manager | — | — |
| ibm | business_process_manager | — | — |
| ibm | business_process_manager | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| ibm | business_process_manager_advanced | — | — |
| x.org | xorg-server | >= 0 < 2:1.15.1-0ubuntu2.11+esm2 | 2:1.15.1-0ubuntu2.11+esm2 |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv3.05.3MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
osv7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9cmc-3866-78p4: IBM Business Automation Workflow 18 and 19, and IBM Business Process Manager 8
ghsa_unreviewed·2022-05-24
CVE-2020-4490 [MEDIUM] GHSA-9cmc-3866-78p4: IBM Business Automation Workflow 18 and 19, and IBM Business Process Manager 8
IBM Business Automation Workflow 18 and 19, and IBM Business Process Manager 8.0, 8.5, and 8.6 could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability and redirect a vitcim to a phishing site. IBM X-Force ID: 181989
OSV
xorg-server vulnerabilities
osv·2020-09-09·CVSS 7.8
CVE-2020-14346 xorg-server vulnerabilities
xorg-server vulnerabilities
USN-4488-1 fixed several vulnerabilities in X.Org. This update provides
the corresponding update and also the update from USN-4490-1 for Ubuntu 14.04 ESM.
Original advisory details:
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled the
input extension protocol. A local attacker could possibly use this issue to
escalate privileges. (CVE-2020-14346)
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly initialized
memory. A local attacker could possibly use this issue to obtain sensitive
information. (CVE-2020-14347)
Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled the
XkbSelectEvents function. A local attacker could possibly use this issue to
escalate privileges. (CVE-2020-14361)
Jan-Niklas Sohn discovered
No detection rules found.
No public exploits indexed.
OWASP
Reverse Tabnabbing
owasp
CVE-2020-4490 Reverse Tabnabbing
# Reverse Tabnabbing
|ID |
|------------|
|WSTG-CLNT-14|
## Summary
[Reverse Tabnabbing](https://owasp.org/www-community/attacks/Reverse_Tabnabbing) is an attack which can be used to redirect users to phishing pages. This usually becomes possible due to the `target` attribute of the `` tag being set to `_blank` which causes the link to be opened in a new tab. When the attribute `rel='noopener noreferrer'` is not used in the same `` tag, the newly opened page can influence the original page and redirect it to a domain controlled by the attacker.
Since the user was on the original domain when the new tab opened, they are less likely to notice that the page has changed, especially if the phishing page is identical to the original domain. Any credentials entered on the attacker-controlled
OWASP
Testing for Reverse Tabnabbing
owasp
Testing for Reverse Tabnabbing
# Testing for Reverse Tabnabbing
|ID |
|------------|
|WSTG-CLNT-14|
## Summary
[Reverse Tabnabbing](https://owasp.org/www-community/attacks/Reverse_Tabnabbing) is an attack which can be used to redirect users to phishing pages. This usually becomes possible due to the `target` attribute of the `` tag being set to `_blank` which causes the link to be opened in a new tab. When the attribute `rel='noopener noreferrer'` is not used in the same `` tag, the newly opened page can influence the original page and redirect it to a domain controlled by the attacker.
Since the user was on the original domain when the new tab opened, they are less likely to notice that the page has changed, especially if the phishing page is identical to the original domain. Any credentials entered on the attacker
2020-05-29
Published