Broadcom PAM
cpe:2.3:a:broadcom:privileged_access_manager:*:*:*:*:*:*:*
A session fixation vulnerability has been identified in the Broadcom PAM server. This issue allows a malicious actor to manipulate the session of a PAM user by enticing them to click on a specially crafted link. Once the link is clicked, the attacker's session can be established with the targeted PAM user.
Exploitation of this vulnerability allows for session fixation, where an attacker can hijack a user's session by fixing it to their own.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.