Lucene search

K
cve[email protected]CVE-2009-2583
HistoryJul 23, 2009 - 8:30 p.m.

CVE-2009-2583

2009-07-2320:30:00
CWE-20
web.nvd.nist.gov
22
ibm
tivoli
identity manager
itim
session fixation
5.0.0.6
vulnerability
nvd

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.009 Low

EPSS

Percentile

83.2%

Multiple session fixation vulnerabilities in IBM Tivoli Identity Manager (ITIM) 5.0.0.6 allow remote attackers to hijack web sessions via unspecified vectors involving the (1) console and (2) self service interfaces.

Affected configurations

NVD
Node
ibmtivoli_identity_managerMatch5.0.0.6

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.009 Low

EPSS

Percentile

83.2%

Related for CVE-2009-2583