#VU34122 Session Fixation in IBM Security Identity Governance and Intelligence (IGI) - CVE-2020-4243
Published: August 5, 2020 / Updated: August 8, 2020
IBM Security Identity Governance and Intelligence (IGI)
IBM Corporation
Description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
IBM Security Identity Governance and Intelligence 5.2.6 Virtual Appliance could allow a remote attacker to obtain sensitive information using man in the middle techniques due to not properly invalidating session tokens. IBM X-Force ID: 175420.