ZeroHour

CVE-2021-36205

CVSS 3.1
9.8 critical
EPSS
1%p62
Published
()
Modified
Description

Under certain circumstances the session token is not cleared on logout.

Vendors
johnsoncontrols
Products
metasys application and data server, metasys extended application and data server, metasys open application server
Weakness
CWE-459
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.