CVE
- Id
- 95820
- CVE No.
- CVE-2016-9000
- Status
- Candidate
- Description
- IBM InfoSphere DataStage is vulnerable to cross-frame scripting, caused by insufficient HTML iframe protection. A remote attacker could exploit this vulnerability using a specially-crafted URL to navigate to a web page the attacker controls. An attacker could use this vulnerability to conduct clickjacking or other client-side browser attacks.
- Phase
- Assigned (20161025)
- Votes
- None (candidate not yet proposed)
- Comments