CVE Published: 29/05/2020 |
CVE Updated: 17/09/2024 |
CVE Year: 2020 Source: ibm |
Vendor: IBM |
Product: Business Process Manager Advanced Status : PUBLISHED
CVE-2020-4490 Description
IBM Business Automation Workflow 18 and 19, and IBM Business Process Manager 8.0, 8.5, and 8.6 could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability and redirect a vitcim to a phishing site. IBM X-Force ID: 181989