CVE-2013-4001

IBM Cognos Command Center < 10.1 - Authentication Bypass

Title source: rule

Description

Session fixation vulnerability in IBM Cognos Command Center before 10.2 allows remote attackers to hijack web sessions via an authorization cookie.

Scores

EPSS 0.0019
EPSS Percentile 40.0%

Classification

CWE
CWE-287
Status draft

Affected Products (2)

ibm/cognos_command_center < 10.1
ibm/cognos_command_center

Timeline

Published Dec 14, 2013
Tracked Since Feb 18, 2026