The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing an attacker to trick a user into clicking on something different from what the user perceives, thus potentially revealing confidential information or allowing others to take control of their computer while clicking on seemingly innocuous objects.
Metrics
Affected Vendors & Products
References
History
Thu, 03 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 03 Jul 2025 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing an attacker to trick a user into clicking on something different from what the user perceives, thus potentially revealing confidential information or allowing others to take control of their computer while clicking on seemingly innocuous objects. | |
| Title | CVE-2025-27455 | |
| Weaknesses | CWE-1021 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SICK AG
Published: 2025-07-03T11:30:49.265Z
Updated: 2025-07-03T13:15:59.115Z
Reserved: 2025-02-26T08:39:58.980Z
Link: CVE-2025-27455
Updated: 2025-07-03T13:04:17.287Z
Status : Awaiting Analysis
Published: 2025-07-03T12:15:23.520
Modified: 2025-07-03T15:13:53.147
Link: CVE-2025-27455
No data.