ZeroHour

CVE-2024-25051

CVSS 3.1
7.2 high
EPSS
<1%p30
Published
()
Modified
Description

IBM Jazz Reporting Service 7.0.2 and 7.0.3 does not invalidate session after logout which could allow an authenticated privileged user to impersonate another user on the system.

Vendors
ibm
Products
jazz reporting service
Weakness
CWE-613
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.