ZeroHour

CVE-2021-20378

CVSS 3.1
8.8 high
EPSS
<1%p36
Published
()
Modified
Description

IBM Guardium Data Encryption (GDE) 3.0.0.2 and 4.0.0.4 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 195709.

Vendors
ibm
Products
guardium data encryption
Weakness
CWE-613
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.