CVE-2004-2558
https://notcve.org/view.php?id=CVE-2004-2558
Unspecified vulnerability in IBM Tivoli SecureWay Policy Director 3.8, Access Manager for e-business 3.9 to 5.1, Access Manager Identity Manager Solution 5.1, Configuration Manager 4.2, Configuration Manager for Automated Teller Machines 2.1.0, and IBM WebSphere Everyplace Server, Service Provider Offering for Multi-platforms 2.1.3 to 2.15 allow remote attackers to hijack sessions of authenticated users via unknown attack vectors involving certain cookies, aka "Potential Credential Impersonation Attack." • http://secunia.com/advisories/11761 http://www-1.ibm.com/support/docview.wss?uid=swg21168762 http://www.securityfocus.com/bid/10449 https://exchange.xforce.ibmcloud.com/vulnerabilities/16315 •
CVE-2001-1191
https://notcve.org/view.php?id=CVE-2001-1191
WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e. WebSeal en IBM Tivoli SecureWay Policy Director 3.8 permite a atacantes remotos causar la denegación de servicios (caida) mediante una URL que finalice con .. • http://www.securityfocus.com/archive/1/245283 http://www.securityfocus.com/bid/3685 •
CVE-2001-0982
https://notcve.org/view.php?id=CVE-2001-0982
Directory traversal vulnerability in IBM Tivoli WebSEAL Policy Director 3.01 through 3.7.1 allows remote attackers to read arbitrary files or directories via encoded .. (dot dot) sequences containing "%2e" strings. • ftp://ftp.tivoli.com/support/patches/patches_3.7.1/3.7.1-POL-0003/3.7.1-POL-0003.README http://archives.neohapsis.com/archives/bugtraq/2001-07/0497.html http://www-1.ibm.com/support/search.wss?rs=0&q=IY18152&apar=only http://www.osvdb.org/1908 http://www.securityfocus.com/bid/3080 https://exchange.xforce.ibmcloud.com/vulnerabilities/6884 •