Vulnerabilities > Improper Restriction of Rendered UI Layers or Frames

DATE CVE VULNERABILITY TITLE RISK
2022-10-27 CVE-2022-36182 Improper Restriction of Rendered UI Layers or Frames vulnerability in Hashicorp Boundary
Hashicorp Boundary v0.8.0 is vulnerable to Clickjacking which allow for the interception of login credentials, re-direction of users to malicious sites, or causing users to perform malicious actions on the site.
network
low complexity
hashicorp CWE-1021
6.1
2022-10-06 CVE-2022-22503 Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM products
IBM Robotic Process Automation 21.0.0 could allow a remote attacker to hijack the clicking action of the victim.
network
low complexity
ibm CWE-1021
6.1
2022-09-08 CVE-2022-3167 Improper Restriction of Rendered UI Layers or Frames vulnerability in Ikus-Soft Rdiffweb
Improper Restriction of Rendered UI Layers or Frames in GitHub repository ikus060/rdiffweb prior to 2.4.1.
network
low complexity
ikus-soft CWE-1021
8.8
2022-09-08 CVE-2022-36736 Improper Restriction of Rendered UI Layers or Frames vulnerability in Jitsi 2.10.5550
Jitsi-2.10.5550 was discovered to contain a vulnerability in its web UI which allows attackers to perform a clickjacking attack via a crafted HTTP request.
network
low complexity
jitsi CWE-1021
6.1
2022-08-23 CVE-2022-2965 Improper Restriction of Rendered UI Layers or Frames vulnerability in Notrinos Notrinoserp
Improper Restriction of Rendered UI Layers or Frames in GitHub repository notrinos/notrinoserp prior to 0.7.
network
low complexity
notrinos CWE-1021
4.3
2022-08-12 CVE-2022-2800 Improper Restriction of Rendered UI Layers or Frames vulnerability in GYM Management System Project GYM Management System
A vulnerability, which was classified as problematic, has been found in SourceCodester Gym Management System.
network
low complexity
gym-management-system-project CWE-1021
6.1
2022-08-12 CVE-2022-20331 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 13.0
In the Framework, there is a possible way to enable a work profile without user consent due to a tapjacking/overlay attack.
local
low complexity
google CWE-1021
7.8
2022-08-10 CVE-2022-20852 Improper Restriction of Rendered UI Layers or Frames vulnerability in Cisco Webex Meetings
Multiple vulnerabilities in the web interface of Cisco Webex Meetings could allow a remote attacker to conduct a cross-site scripting (XSS) attack or a frame hijacking attack against a user of the web interface.
network
low complexity
cisco CWE-1021
6.5
2022-08-09 CVE-2022-2734 Improper Restriction of Rendered UI Layers or Frames vulnerability in Open-Emr Openemr
Improper Restriction of Rendered UI Layers or Frames in GitHub repository openemr/openemr prior to 7.0.0.1.
network
low complexity
open-emr CWE-1021
5.4
2022-08-05 CVE-2022-33723 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 10.0/11.0/12.0
A vulnerable code in onCreate of BluetoothScanDialog prior to SMR Aug-2022 Release 1, allows attackers to trick the user to select an unwanted bluetooth device via tapjacking/overlay attack.
network
low complexity
google CWE-1021
6.1