ZeroHour

CVE-2021-20473

CVSS 3.1
6.5 medium
EPSS
<1%p40
Published
()
Modified
Description

IBM Sterling File Gateway User Interface 2.2.0.0 through 6.1.1.0 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 196944.

Vendors
ibm
Products
sterling file gateway
Weakness
CWE-613
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.