Vulnerabilities > Session Fixation

DATE CVE VULNERABILITY TITLE RISK
2017-02-01 CVE-2016-6043 Session Fixation vulnerability in IBM Tivoli Storage Manager
Tivoli Storage Manager Operations Center could allow a local user to take over a previously logged in user due to session expiration not being enforced.
local
high complexity
ibm CWE-384
7.0
2017-02-01 CVE-2016-6040 Session Fixation vulnerability in IBM Rational Collaborative Lifecycle Management
IBM Jazz Foundation could allow an authenticated user to take over a previously logged in user due to session expiration not being enforced.
network
high complexity
ibm CWE-384
5.0
2017-01-10 CVE-2015-4594 Session Fixation vulnerability in Eclinicalworks Population Health
eClinicalWorks Population Health (CCMR) suffers from a session fixation vulnerability.
network
low complexity
eclinicalworks CWE-384
critical
9.8