← Back

CVE-2021-20473

nvd nist
Published: Oct 7, 2021Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

IBM Sterling File Gateway User Interface 2.2.0.0 through 6.1.1.0 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 196944.

Affected (3)

1 product
Sterling File Gateway
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 2.2.0.0 to 5.2.6.5_3
From 6.0.0.0 to 6.0.3.4
From 6.1.0.0 to 6.1.0.1

References (4)

Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: psirt@us.ibm.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.