CVE-2021-29868

CVSS v3 Score
4.0
Medium
CVSS v2 Score
2.1
Low

Vulnerability Description

IBM i2 iBase 8.9.13 and 9.0.0 could allow a local attacker to obtain sensitive information due to insufficient session expiration. IBM X-Force ID: 206213.

CVSS:4.0(Medium)

IBM Security Identity Governance and Intelligence 5.2.6 does not invalidate session after logout which could allow a user to obtain sensitive information from another users' session. IBM X-Force ID: 1...

CVSS:4.1(Medium)

A vulnerability was found in the Quay web application. Sessions in the Quay web application never expire. An attacker, able to gain access to a session, could use it to control or delete a user's cont...

CVSS:4.1(Medium)

IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.11.0 and IBM QRadar Suite Software 1.10.12.0 through 1.10.23.0 does not invalidate session after logout which could allow another authenticated ...

CVSS:4.1(Medium)

Insufficient Session Expiration in GitHub repository answerdev/answer prior to v1.1.0.

CVSS:4.1(Medium)

Insufficient Session Expiration in GitHub repository linkstackorg/linkstack prior to v4.2.9.

CVSS:3.9(Low)

A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application does not invalidate the session token on logout. This could allow an at...