TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2013-2997

N/A

Beschreibung

IBM Security AppScan Enterprise before 8.7 does not invalidate the session context upon a logout action, which allows remote attackers to hijack sessions by leveraging an unattended workstation.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht9/8/2013
Zuletzt geandert4/11/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

ibm:security_appscan

Schwachen (CWE)

CWE-264

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.