Piwik before 1.1 does not prevent the rendering of the login form inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2011-01-10T19:18:00
Updated: 2024-08-06T21:51:09.060Z
Reserved: 2011-01-10T00:00:00
Link: CVE-2011-0399
Vulnrichment
No data.
NVD
Status : Modified
Published: 2011-01-10T20:00:17.203
Modified: 2024-11-21T01:23:53.190
Link: CVE-2011-0399
Redhat
No data.