4.3
CVSSv2

CVE-2014-4784

Published: 10/09/2014 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

IBM Initiate Master Data Service 9.5 prior to 9.5.093013, 9.7 prior to 9.7.093013, 10.0 prior to 10.0.093013, and 10.1 prior to 10.1.093013 does not properly restrict use of FRAME elements, which allows remote malicious users to conduct phishing attacks, and bypass intended access restrictions or obtain sensitive information, via a crafted web site, related to a "frame injection" issue.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm initiate master data service 10.0

ibm initiate master data service 10.1

ibm initiate master data service 9.5

ibm initiate master data service 9.7