Back to search
CVE-2016-8924
Published: Apr 26, 2017
Modified: Aug 6, 2024
PUBLISHED
Description
IBM Maximo Asset Management 7.1, 7.5 and 7.6 could allow a remote attacker to hijack a user's session, caused by the failure to invalidate an existing session identifier. An attacker could exploit this vulnerability to gain access to another user's session. IBM X-Force ID: 118537.
| Vendor | Product | Versions |
|---|---|---|
IBM Corporation | Maximo Asset Management | affected 7.1, 7.1.1, 7.5, 7.6 |
References
98023
vdb-entry
x_refsource_BID
http://www.ibm.com/support/docview.wss?uid=swg21996256
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now