VendorsIBMsterling_selling_and_fulfillment_foundation9.5
Vulnerabilities

IBM Sterling Selling 9.5

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2016-5953
IBM Sterling Order Management transmits the session identifier within the URL. When a user is unable to view a certain view due to not being allowed permissions, the website responds with an error page where the session identifier is encoded as Base64 in the URL.
Published 2017-02-01 · Modified
4.3EPSS 0.008