1.7
CVSSv2

CVE-2013-2997

Published: 08/09/2013 Updated: 29/08/2017
CVSS v2 Base Score: 1.7 | Impact Score: 2.9 | Exploitability Score: 3.1
VMScore: 151
Vector: AV:L/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

IBM Security AppScan Enterprise prior to 8.7 does not invalidate the session context upon a logout action, which allows remote malicious users to hijack sessions by leveraging an unattended workstation.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm security appscan 8.5.0.1

ibm security appscan 8.5.0.0

ibm security appscan 6.1.1.0

ibm security appscan 6.0.2.0

ibm security appscan

ibm security appscan 8.0.1.0

ibm security appscan 8.0.0.2

ibm security appscan 5.6.0.0

ibm security appscan 8.0.11

ibm security appscan 8.0.1.1

ibm security appscan 6.0.1.0

ibm security appscan 6.0.0.0

ibm security appscan 8.6.0.1

ibm security appscan 8.6.0.0

ibm security appscan 8.0.0.1

ibm security appscan 8.0.0.0