CVE-2024-22351
published 2025-04-23CVE-2024-22351: IBM InfoSphere Information 11.7 Server does not invalidate session after logout which could allow an authenticated user to impersonate another user on the…
medium6.3CVSS 3.1
AVNACLPRLUINSUCLILAL
IBM InfoSphere Information 11.7 Server does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | infosphere_information_server | — | — |
| ibm | infosphere_information_server | >= 11.7 < 11.7.1 | 11.7.1 |