Vulnerabilities > Improper Restriction of Rendered UI Layers or Frames

DATE CVE VULNERABILITY TITLE RISK
2021-01-08 CVE-2020-5020 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM Spectrum Protect Plus
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 could allow a remote attacker to hijack the clicking action of the victim.
network
ibm CWE-1021
4.3
2021-01-08 CVE-2020-16033 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Chrome
Inappropriate implementation in WebUSB in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof security UI via a crafted HTML page.
network
google CWE-1021
4.3
2021-01-08 CVE-2020-16032 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Chrome
Insufficient data validation in sharing in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
google CWE-1021
4.3
2021-01-08 CVE-2020-16031 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Chrome
Insufficient data validation in UI in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
google CWE-1021
4.3
2020-12-29 CVE-2020-35735 Improper Restriction of Rendered UI Layers or Frames vulnerability in Vidyo
Vidyo 02-09-/D allows clickjacking via the portal/ URI.
network
vidyo CWE-1021
4.3
2020-12-11 CVE-2020-28218 Improper Restriction of Rendered UI Layers or Frames vulnerability in Schneider-Electric Easergy T300 Firmware 1.5.2/2.7
A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists in Easergy T300 (firmware 2.7 and older), that would allow an attacker to trick a user into initiating an unintended action.
4.3
2020-12-09 CVE-2020-26962 Improper Restriction of Rendered UI Layers or Frames vulnerability in Mozilla Firefox
Cross-origin iframes that contained a login form could have been recognized by the login autofill service, and populated.
network
mozilla CWE-1021
4.3
2020-12-09 CVE-2020-26953 Improper Restriction of Rendered UI Layers or Frames vulnerability in Mozilla Firefox
It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user.
network
mozilla CWE-1021
4.3
2020-12-08 CVE-2020-9993 Improper Restriction of Rendered UI Layers or Frames vulnerability in Apple products
The issue was addressed with improved UI handling.
network
low complexity
apple CWE-1021
4.3
2020-12-08 CVE-2020-9987 Improper Restriction of Rendered UI Layers or Frames vulnerability in Apple Safari
An inconsistent user interface issue was addressed with improved state management.
network
apple CWE-1021
4.3