CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Ibm 1Sterling Connect Direct User Interface Jun 17, 2026 Jul 26, 2021 N/A· v4 5.4 MEDIUM· v3 4.9 MEDIUM· v2 IBM Sterling Connect:Direct Browser User Interface 1.4.1.1 and 1.5.0.2 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker co...Show more |
1Ibm 1Sterling Connect Direct User Interface Apr 29, 2026 Jun 21, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this c...Show more |
1Ibm 1Sterling Connect Direct User Interface Apr 29, 2026 Jun 21, 2013 N/A· v4 N/A· v3 1.9 LOW· v2 The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not close pages upon the timeout of a session, which allows physically proximate attackers to obtain sensitive administrative-co...Show more |