The web application is vulnerable to a so-called ‘clickjacking’ attack. In this type of attack, the vulnerable page is inserted into a page controlled by the attacker in order to deceive the victim. This deception can range from making the victim click on a button to making them enter their login credentials in a form that, a priori, appears legitimate.
CVSS
No CVSS.
References
Configurations
No configuration.
History
03 Nov 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
31 Oct 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-31 15:15
Updated : 2025-11-04 15:41
NVD link : CVE-2025-64387
Mitre link : CVE-2025-64387
CVE.ORG link : CVE-2025-64387
JSON object : View
Products Affected
No product.
CWE
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
