Session Hijacking Vulnerability in IBM Tivoli SecureWay and WebSphere Products
CVE-2004-2558
Currently unrated
Key Information:
- Vendor
IBM
- Status
- Vendor
- CVE Published:
- 31 December 2004
What is CVE-2004-2558?
This vulnerability in various IBM Tivoli and WebSphere products allows attackers to hijack authenticated user sessions by exploiting weaknesses in cookie handling. Attackers can leverage unknown methods to manipulate cookies, enabling them to gain unauthorized access to user sessions, potentially leading to credential impersonation and data breaches.