CVE Published: 08/09/2013 |
CVE Updated: 06/08/2024 |
CVE Year: 2013 Source: ibm |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2013-2997 Description
IBM Security AppScan Enterprise before 8.7 does not invalidate the session context upon a logout action, which allows remote attackers to hijack sessions by leveraging an unattended workstation.