Unrated severityNVD Advisory· Published Dec 14, 2013· Updated Jun 16, 2026
CVE-2013-4001
CVE-2013-4001
Description
Session fixation vulnerability in IBM Cognos Command Center before 10.2 allows remote attackers to hijack web sessions via an authorization cookie.
Affected products
3cpe:2.3:a:ibm:cognos_command_center:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:cognos_command_center:*:*:*:*:*:*:*:*range: <=10.1
- cpe:2.3:a:ibm:cognos_command_center:10.0:*:*:*:*:*:*:*
- (no CPE)range: <10.2
Patches
Vulnerability mechanics
References
2- www-01.ibm.com/support/docview.wssnvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/85151nvd
News mentions
0No linked articles in our index yet.