ZeroHour

CVE-2022-38382

CVSS 3.1
4.1 medium
EPSS
<1%p23
Published
()
Modified
Description

IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.11.0 and IBM QRadar Suite Software 1.10.12.0 through 1.10.23.0 does not invalidate session after logout which could allow another authenticated user to obtain sensitive information. IBM X-Force ID: 233672.

Vendors
ibm
Products
cloud pak for security, qradar suite
Weakness
CWE-613
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.