CVE-2016-6025
—CVSS 3.0
5.9 medium
EPSS
<1%p40
Published
()
Modified
Description
The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1 allows remote attackers to obtain access by leveraging an unattended workstation to conduct a post-logoff session-reuse attack involving a modified URL.
- Vendors
- ibm
- Products
- sterling secure proxy
- Weakness
- CWE-264
- Vector
- CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
In the news0 stories
No ingested article mentions this CVE yet.