IBM Security Access Manager Appliance 9.0.7 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 179358.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2020-10-14T16:35:14.835522Z

Updated: 2024-09-17T00:52:22.785Z

Reserved: 2019-12-30T00:00:00

Link: CVE-2020-4395

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-10-14T17:15:13.427

Modified: 2020-10-26T19:09:43.703

Link: CVE-2020-4395

cve-icon Redhat

No data.