Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3f84-gf8q-ggcq

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not invalidate a session upon a logout action, which allows remote attackers to bypass authentication by leveraging an unattended workstation.

IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not invalidate a session upon a logout action, which allows remote attackers to bypass authentication by leveraging an unattended workstation.

EPSS

Процентиль: 50%
0.00265
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
около 12 лет назад

IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not invalidate a session upon a logout action, which allows remote attackers to bypass authentication by leveraging an unattended workstation.

EPSS

Процентиль: 50%
0.00265
Низкий

Дефекты

CWE-287