CVE-2016-5953 — IBM Sterling Order Management transmits the session identifier within the URL. When a user is unable to view a certain view due to not being allowed permissions, the website responds with an error pag — CVE Database · The Intelligence Room