CVE

Id
97972  
CVE No.
CVE-2017-1152  
Status
Candidate  
Description
IBM Financial Transaction Manager 3.0.1 and 3.0.2 does not properly update the SESSIONID with each request, which could allow a user to obtain the ID in further attacks against the system. IBM X-Force ID: 122293.  
Phase
Assigned (20161130)  
Votes
None (candidate not yet proposed)  
Comments