4.4
CVSSv2

CVE-2016-0340

Published: 15/07/2016 Updated: 01/09/2017
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
CVSS v3 Base Score: 7.4 | Impact Score: 5.9 | Exploitability Score: 1.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 up to and including 7.0.1.1 prior to 7.0.1-ISS-SIM-FP0003 mishandles session expiration, which allows remote malicious users to hijack sessions by leveraging an unattended workstation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm security identity manager adapter 7.0.0.2

ibm security identity manager adapter 7.0.0.1

ibm security identity manager adapter 7.0.0.0

ibm security identity manager adapter 7.0.1.1

ibm security identity manager adapter 7.0.1.0

ibm security identity manager adapter 7.0.0.3