Session fixation vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack web sessions via a jsession_id cookie.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/802596 | third party advisory us government resource |
https://exchange.xforce.ibmcloud.com/vulnerabilities/79785 | vdb entry |
http://www.securityfocus.com/bid/56381 | vdb entry |
http://secunia.com/advisories/51203 | third party advisory |