Session Fixation Vulnerability in IBM Security Verify Information Queue
CVE-2021-20411
7.5HIGH
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 12 February 2021
What is CVE-2021-20411?
The session fixation vulnerability in IBM Security Verify Information Queue versions 1.0.6 and 1.0.7 allows an attacker to impersonate other users by exploiting flaws in the session identifier updating process. This could potentially grant unauthorized access to sensitive user data and actions, making it critical for users to ensure their installations are properly patched and updated to maintain security integrity.
Affected Version(s)
Security Verify Information Queue 1.0.6
Security Verify Information Queue 1.0.7