MEDIUM
IBM WebSphere Application Server 8.0.x before 8.0.0.10 and 8.5.x before 8.5.5.4 allows remote attackers to spoof OpenID and OpenID Connect cookies, and consequently obtain sensitive information, via a crafted URL
Published Dec 18, 2014
5.0
MEDIUMCVSS 2.0
EPSS 2.10%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.