IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles session identifiers after logout, which makes it easier for remote attackers to spoof users by leveraging knowledge of "traffic records."
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2016-07-15T18:00:00
Updated: 2017-08-31T09:57:01
Reserved: 2015-12-08T00:00:00
Link: CVE-2016-0339
JSON object: View
NVD Information
Status : Modified
Published: 2016-07-15T18:59:04.297
Modified: 2017-09-01T01:29:01.817
Link: CVE-2016-0339
JSON object: View
Redhat Information
No data.
CWE