IBM WebSphere Application Server 3.02 through 3.53 uses predictable session IDs for cookies, which allows remote attackers to gain privileges of WebSphere users via brute force guessing.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2001-09-19 04:00
Updated : 2017-10-10 01:29
NVD link : CVE-2001-0962
Mitre link : CVE-2001-0962
CVE.ORG link : CVE-2001-0962
JSON object : View
Products Affected
ibm
- websphere_application_server
- websphere_commerce_suite
CWE