CVE-2010-3892 Information
Feb 14, 2021
cve
Description
Session fixation vulnerability in the login form in the administrator interface in IBM OmniFind Enterprise Edition 8.x and 9.x allows remote attackers to hijack web sessions by replaying a session ID (aka SID) value.
Reference
http://security.fatihkilic.de/advisory/fkilic-sa-2010-ibm-omnifind.txt http://www.securityfocus.com/archive/1/514688/100/0/threaded http://www.securityfocus.com/bid/44740 http://www.vupen.com/english/advisories/2010/2933
Share on: