Loading...
Loading...
IBM WebSphere Commerce 7.0 Feature Pack 4 and Feature Pack 5 incorrectly maintains a valid session after unspecified interaction with REST services, which allows remote attackers to issue REST requests in the context of an arbitrary user's active session via unknown vectors.
August 1, 2013
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-2994
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.