Session fixation vulnerability in the Report Advisor (RA) component in EMC Network Configuration Manager (NCM) before 9.3 allows remote attackers to hijack web sessions via a session cookie.
2014-07-01T00:55:05.607
2025-04-12T10:46:40.837
Deferred
CVSSv2: 5.4 (MEDIUM)
AV:A/AC:M/Au:N/C:P/I:P/A:P
5.5
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | emc | smarts_network_configuration_manager | ≤ 9.2 | Yes |
| Application | emc | smarts_network_configuration_manager | 9.1 | Yes |