Vulnerabilities > CVE-2020-4995 - Insufficient Session Expiration vulnerability in IBM Security Identity Governance and Intelligence 5.2.6
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
IBM Security Identity Governance and Intelligence 5.2.6 does not invalidate session after logout which could allow a user to obtain sensitive information from another users' session. IBM X-Force ID: 192912.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |