Vulnerabilities > Improper Restriction of Rendered UI Layers or Frames

DATE CVE VULNERABILITY TITLE RISK
2019-09-09 CVE-2019-16175 Improper Restriction of Rendered UI Layers or Frames vulnerability in Limesurvey
A clickjacking vulnerability was found in Limesurvey before 3.17.14.
4.3
2019-08-20 CVE-2019-2125 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android
In ChangeDefaultDialerDialog.java, there is a possible escalation of privilege due to an overlay attack.
4.4
2019-08-14 CVE-2019-3639 Improper Restriction of Rendered UI Layers or Frames vulnerability in Mcafee web Gateway
Clickjack vulnerability in Adminstrator web console in McAfee Web Gateway (MWG) 7.8.2.x prior to 7.8.2.12 allows remote attackers to conduct clickjacking attacks via a crafted web page that contains an iframe via does not send an X-Frame-Options HTTP header.
network
low complexity
mcafee CWE-1021
7.1
2019-07-30 CVE-2019-4285 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server - Liberty Admin Center could allow a remote attacker to hijack the clicking action of the victim.
network
ibm CWE-1021
3.5
2019-07-18 CVE-2019-3794 Improper Restriction of Rendered UI Layers or Frames vulnerability in Pivotal Software Cloud Foundry UAA
Cloud Foundry UAA, versions prior to v73.4.0, does not set an X-FRAME-OPTIONS header on various endpoints.
4.3
2019-07-09 CVE-2019-9147 Improper Restriction of Rendered UI Layers or Frames vulnerability in Mailvelope
Mailvelope prior to 3.1.0 is vulnerable to a clickjacking attack against the settings page.
4.3
2019-06-24 CVE-2019-12880 Improper Restriction of Rendered UI Layers or Frames vulnerability in Bcnquark Quarking Password Manager 3.1.84
BCN Quark Quarking Password Manager 3.1.84 suffers from a clickjacking vulnerability caused by allowing * within web_accessible_resources.
network
bcnquark CWE-1021
4.3
2019-06-10 CVE-2019-5243 Improper Restriction of Rendered UI Layers or Frames vulnerability in Huawei Hg255S Firmware
There is a Clickjacking vulnerability in Huawei HG255s product.
network
huawei CWE-1021
4.3
2019-06-06 CVE-2019-4217 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM Security Information Queue 1.0.0/1.0.1/1.0.2
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 could allow a remote attacker to hijack the clicking action of the victim.
network
ibm CWE-1021
4.3
2019-05-20 CVE-2019-4058 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM Bigfix Platform
IBM BigFix Platform 9.2 and 9.5 could allow a low-privilege user to manipulate the UI into exposing interface elements and information normally restricted to administrators.
network
low complexity
ibm CWE-1021
6.5