Vulnerability Details CVE-2022-30610
IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.15.0 is vulnerable to reverse tabnabbing where it could allow a page linked to from within IBM Spectrum Copy Data Management to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 227363.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.2%
CVSS Severity
CVSS v3 Score 4.4
CVSS v2 Score 3.5
Products affected by CVE-2022-30610
-
cpe:2.3:a:ibm:spectrum_copy_data_management:2.2.0.0
-
cpe:2.3:a:ibm:spectrum_copy_data_management:2.2.13
-
cpe:2.3:a:ibm:spectrum_copy_data_management:2.2.14.3
-
cpe:2.3:a:ibm:spectrum_copy_data_management:2.2.15
-
cpe:2.3:a:ibm:spectrum_copy_data_management:2.2.15.0
-
cpe:2.3:o:linux:linux_kernel:-