VYPR
Unrated severityNVD Advisory· Published Dec 14, 2013· Updated Jun 16, 2026

CVE-2013-4001

CVE-2013-4001

Description

Session fixation vulnerability in IBM Cognos Command Center before 10.2 allows remote attackers to hijack web sessions via an authorization cookie.

Affected products

3
  • cpe:2.3:a:ibm:cognos_command_center:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:ibm:cognos_command_center:*:*:*:*:*:*:*:*range: <=10.1
    • cpe:2.3:a:ibm:cognos_command_center:10.0:*:*:*:*:*:*:*
    • (no CPE)range: <10.2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.