← Back to CVE List

CVE-2017-9280

Published: 2018-03-02T20:29Z
Last Modified: 2024-11-21T03:35Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Some NetIQ Identity Manager Applications before Identity Manager 4.5.6.1 included the session token in GET URLs, potentially allowing exposure of user sessions to untrusted third parties via proxies, referer urls or similar. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt