IBM Datacap Clickjacking Vulnerability

Vulnerability

A clickjacking vulnerability has been identified in IBM Datacap versions 9.1.7, 9.1.8, and 9.1.9. This vulnerability could allow a remote attacker to hijack the clicking actions of a victim. By convincing the victim to visit a malicious website, the attacker could exploit this vulnerability to take control of the victim's click actions, potentially leading to further attacks against the victim.

Impact

Exploitation of this vulnerability could allow for clickjacking, where an attacker tricks a user into clicking on something different from what the user perceives, potentially leading to unauthorized actions being performed on behalf of the user.

Remediation

Users are advised to upgrade to IBM Datacap version 9.1.9 Interim Fix 007. Details can be found in the IBM Datacap Version 9.1.9, interim fix 007 readme file.

Added: Jun 28, 2025, 1:17 AM
Updated: Jun 28, 2025, 1:17 AM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
1.7
exploitability
6.0
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.