IBM WebSphere Application Server 3.02 through 3.53 uses predictable session IDs for cookies, which allows remote attackers to gain privileges of WebSphere users via brute force guessing.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2002-06-25T04:00:00

Updated: 2024-08-08T04:37:07.154Z

Reserved: 2002-01-31T00:00:00

Link: CVE-2001-0962

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2001-09-19T04:00:00.000

Modified: 2024-11-20T23:36:32.553

Link: CVE-2001-0962

cve-icon Redhat

No data.