Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM Tivoli Netcool/Webtop 2.1 before 2.1.0.5 preserves cached user privileges after logout, which allows physically proximate attackers to hijack a session by visiting an unattended workstation, as demonstrated by a root session that is still valid after a subsequent read-only session has begun.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Tivoli Netcool/Webtop权限提升漏洞
Vulnerability Description
IBM Tivoli Netcool/Webtop通过HTML和Java向远程操作人员交付图形、表格和事件列表。 当用户以root权限登录到webtop然后在注销后没有关闭浏览器的话,则以其他权限的用户再次登录到webtop时仍将拥有root权限。
CVSS Information
N/A
Vulnerability Type
N/A