CVE Vulnerabilities

CVE-2020-4919

Published: Jan 04, 2021 | Modified: Nov 21, 2024
CVSS 3.x
3.8
LOW
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N
CVSS 2.x
5.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Cloud Pak System 2.3 has insufficient logout controls which could allow an authenticated privileged user to impersonate another user on the system. IBM X-Force ID: 191395.

Affected Software

NameVendorStart VersionEnd Version
Cloud_pak_systemIbm2.3.0.0 (including)2.3.3.3 (excluding)

References