IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 268749.
2024-02-09T01:15:08.493
2024-11-21T08:26:30.480
Modified
CVSSv3.1: 6.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | engineering_lifecycle_optimization | 7.0.2 | Yes |
Application | ibm | engineering_lifecycle_optimization | 7.0.3 | Yes |