Skip to main content

Credentials Management Errors

CVE-2013-5450

Severity Medium
Score 4/10

Summary

IBM Security AppScan Enterprise 8.5 through 8.7.0.1, when Jazz authentication is enabled, allows man-in-the-middle attackers to obtain sensitive information or modify data by leveraging an improperly protected URL to obtain a session token.

  • HIGH
  • NETWORK
  • NONE
  • PARTIAL
  • PARTIAL
  • NONE

CWE-255 - Credentials Management Errors

Weaknesses in this category are related to the management of credentials.

References

Advisory Timeline

  • Published