CVE-2024-25051 - CERT CVE
ID CVE-2024-25051
Sažetak IBM Jazz Reporting Service 7.0.2 and 7.0.3 does not invalidate session after logout which could allow an authenticated privileged user to impersonate another user on the system.
Reference
CVSS
Base: 6.6
Impact: 5.9
Exploitability:0.7
Pristup
VektorSloženostAutentikacija
NETWORK HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Zadnje važnije ažuriranje 07-04-2025 - 14:18
Objavljeno 02-04-2025 - 15:15