CVE-2022-38382
4.1
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:N/A:N
Exploitability: 2.3 / Impact: 1.4
Source: NVD
Description
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.11.0 and IBM QRadar Suite Software 1.10.12.0 through 1.10.23.0 does not invalidate session after logout which could allow another authenticated user to obtain sensitive information. IBM X-Force ID: 233672.
Affected (2)
Products: Ibm: Cloud Pak For Security, Qradar Suite
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 1.10.0.0 to 1.10.11.0 | |
| From 1.10.12.0 to 1.10.23.0 |
References (2)
Timeline
No history available yet.