4.3
CVSSv2

CVE-2016-0339

Published: 15/07/2016 Updated: 01/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.6 | Impact Score: 3.4 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 up to and including 7.0.1.1 prior to 7.0.1-ISS-SIM-FP0003 mishandles session identifiers after logout, which makes it easier for remote malicious users to spoof users by leveraging knowledge of "traffic records."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm security identity manager adapter 7.0.0.3

ibm security identity manager adapter 7.0.0.2

ibm security identity manager adapter 7.0.1.1

ibm security identity manager adapter 7.0.1.0

ibm security identity manager adapter 7.0.0.1

ibm security identity manager adapter 7.0.0.0