Session Hijacking Vulnerability in IBM Rational AppScan Enterprise

Session Hijacking Vulnerability in IBM Rational AppScan Enterprise

CVE-2012-0733 · MEDIUM Severity

AV:N/AC:M/AU:S/C:P/I:P/A:P

IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1, when Integrated Windows authentication is used, allows remote authenticated users to obtain administrative privileges by hijacking a session associated with the service account.

Learn more about our User Device Pen Test.