2 results (0.004 seconds)

CVSS: 9.8EPSS: 1%CPEs: 3EXPL: 0

19 Sep 2001 — IBM WebSphere Application Server 3.02 through 3.53 uses predictable session IDs for cookies, which allows remote attackers to gain privileges of WebSphere users via brute force guessing. • http://archives.neohapsis.com/archives/bugtraq/2001-09/0234.html •

CVSS: 9.8EPSS: 16%CPEs: 20EXPL: 2

03 May 2001 — orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of the report capability. • https://www.exploit-db.com/exploits/20618 •