๐Ÿ” CVE Alert

CVE-2022-34334

MEDIUM 6.3
CVSS Score
6.3
EPSS Score
0.0%
EPSS Percentile
0th

IBM Sterling Partner Engagement Manager 2.0 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 229704.

Vendor ibm
Product sterling partner engagement manager
Published Oct 10, 2022
Last Updated Sep 16, 2024
Stay Ahead of the Next One

Get instant alerts for ibm sterling partner engagement manager

Be the first to know when new medium vulnerabilities affecting ibm sterling partner engagement manager are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/I:L/UI:N/AC:L/C:L/A:L/PR:L/AV:N/S:U/RL:O/E:U/RC:C

Affected Versions

IBM / Sterling Partner Engagement Manager
6.1 2.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
ibm.com: https://www.ibm.com/support/pages/node/6828097 exchange.xforce.ibmcloud.com: https://exchange.xforce.ibmcloud.com/vulnerabilities/229704