Multiple session fixation vulnerabilities in IBM Tivoli Identity Manager (ITIM) 5.0.0.6 allow remote attackers to hijack web sessions via unspecified vectors involving the (1) console and (2) self service interfaces.
References
Link | Resource |
---|---|
http://secunia.com/advisories/35931 | Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg1IZ55659 | Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg24023826 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/35779 | Patch |
http://www.securitytracker.com/id?1022597 | |
http://www.vupen.com/english/advisories/2009/1990 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2009-07-23T20:00:00
Updated: 2009-08-04T09:00:00
Reserved: 2009-07-23T00:00:00
Link: CVE-2009-2583
JSON object: View
NVD Information
Status : Modified
Published: 2009-07-23T20:30:00.280
Modified: 2009-08-04T05:25:44.563
Link: CVE-2009-2583
JSON object: View
Redhat Information
No data.
CWE