Description
IBM Content Navigator 3.0CD does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 175559.
CVSS breakdown
CVSS 3.0
Privileges Required
Low
Attack Complexity
Low
Availability
Low
Attack Vector
Network
Scope
Unchanged
User Interaction
None
Confidentiality
Low
Integrity
Low
RL
O
RC
Changed
E
Unchanged
Affected products
- ibm / content_navigator3.0CD – 3.0CD