CVE-2024-1890

Vulnerability whereby an attacker could send a malicious link to an authenticated operator, which could allow remote attackers to perform a clickjacking attack on Sunny WebBox firmware version 1.6.1 and earlier.
Configurations

No configuration.

History

21 Mar 2024, 02:51

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad por la cual un atacante podría enviar un enlace malicioso a un operador autenticado, lo que podría permitir a atacantes remotos realizar un ataque de clickjacking en la versión de firmware 1.6.1 y anteriores de Sunny WebBox.

26 Feb 2024, 16:32

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-26 16:27

Updated : 2024-04-11 01:24


NVD link : CVE-2024-1890

Mitre link : CVE-2024-1890

CVE.ORG link : CVE-2024-1890


JSON object : View

Products Affected

No product.

CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames