CVE-2010-3892

Publication date

2010-11-12 21:00:00

Family

mitre

State

PUBLISHED

Description

Session fixation vulnerability in the login form in the administrator interface in IBM OmniFind Enterprise Edition 8.x and 9.x allows remote attackers to hijack web sessions by replaying a session ID (aka SID) value.