6.8 Medium
AI Score
Confidence
Low
0.001 Low
EPSS
Percentile
47.3%
IBM Security AppScan Enterprise 5.6 and 8.x before 8.7 includes a security test that sends session cookies to a specific external server, which allows man-in-the-middle attackers to hijack the test account by capturing these cookies.
www-01.ibm.com/support/docview.wss?uid=swg21626264
exchange.xforce.ibmcloud.com/vulnerabilities/82592