CVE-2009-2583: Input Validation
Multiple session fixation vulnerabilities in IBM Tivoli Identity Manager (ITIM) 5.0.0.6 allow remote attackers to hijack web sessions via unspecified vectors involving the (1) console and (2) self service interfaces.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2583?
CVE-2009-2583 is considered a moderate severity vulnerability due to the potential for session hijacking.
How does CVE-2009-2583 affect IBM Tivoli Identity Manager?
CVE-2009-2583 affects IBM Tivoli Identity Manager 5.0.0.6 by allowing remote attackers to hijack web sessions.
What are the attack vectors for CVE-2009-2583?
CVE-2009-2583 can be exploited through unspecified vectors in the console and self-service interfaces.
How can I prevent exploitation of CVE-2009-2583?
To prevent exploitation of CVE-2009-2583, it is recommended to apply available patches and security updates for IBM Tivoli Identity Manager.
Is there a known fix for CVE-2009-2583?
Yes, IBM has released patches to address CVE-2009-2583, which should be applied to impacted installations.