CVE-2009-0892

Publication date

2009-03-31 10:00:00

Family

mitre

State

PUBLISHED

Description

The administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.23 and 7.0 before 7.0.0.3 allows attackers to hijack user sessions in "specific scenarios" related to a forced logout.