Description
Improper restriction of rendered UI layers or frames in EC-CUBE versions from 3.0.0 to 3.0.18 leads to clickjacking attacks. If a user accesses a specially crafted page while logged into the administrative page, unintended operations may be conducted.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5245 | Improper restriction of rendered UI layers or frames in EC-CUBE versions from 3.0.0 to 3.0.18 leads to clickjacking attacks. If a user accesses a specially crafted page while logged into the administrative page, unintended operations may be conducted. |
Github GHSA |
GHSA-rwh8-h525-4jvj | EC-CUBE Improper Restriction of Rendered UI Layers or Frames |
References
History
No history.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-04T08:39:25.580Z
Reserved: 2020-01-06T00:00:00.000Z
Link: CVE-2020-5679
No data.
Status : Modified
Published: 2020-12-03T12:15:11.943
Modified: 2024-11-21T05:34:28.090
Link: CVE-2020-5679
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA