Security Advisory

CVE-2018-5304

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-05-11 21:00:00
Last updated 2024-08-05 05:33:43
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered on the Impinj Speedway Connect R420 RFID Reader before 2.2.2. The affected web interface is vulnerable to ClickJacking or UI Redressing: it is possible to access the web application in an iframe, and clicking on the iframe will redirect to a third-party application or perform other malicious actions.