TROYANOSYVIRUS
Volver a CVEs

CVE-2009-0892

N/A

Descripcion

The administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.23 and 7.0 before 7.0.0.3 allows attackers to hijack user sessions in "specific scenarios" related to a forced logout.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado3/31/2009
Ultima modificacion4/23/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

ibm:websphere_application_server

Debilidades (CWE)

CWE-287

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.