Security Advisory

CVE-2016-0339

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-07-15 18:00:00
Last updated 2024-08-05 22:15:23
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles session identifiers after logout, which makes it easier for remote attackers to spoof users by leveraging knowledge of "traffic records."