5.4
CVSSv3

CVE-2020-4555

Published: 21/12/2020 Updated: 22/12/2020
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
CVSS v3 Base Score: 5.4 | Impact Score: 2.5 | Exploitability Score: 2.8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

IBM Financial Transaction Manager 3.0.6 and 3.1.0 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 183328.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm financial transaction manager 2.1.1.0

ibm financial transaction manager 3.0.0

ibm financial transaction manager 3.0.2

ibm financial transaction manager 3.0.5

ibm financial transaction manager 3.0.6

ibm financial transaction manager 3.1.0

ibm financial transaction manager 3.2.1

ibm financial transaction manager 3.2.2

ibm financial transaction manager 3.2.3

ibm financial transaction manager 3.2.4