IBM WebSEAL Improper Restriction of Rendered UI Layers or Frames Vulnerability - CVE-2018-1803
IBM Security Access Manager Appliance 9.0.1.0 9.0.2.0 9.0.3.0 9.0.4.0 and 9.0.5.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site a remote attacker could exploit this vulnerability to hijack the victim39s click actions and possibly launch further attacks against the victim. IBM X-Force ID: 149702.