Information Disclosure Vulnerability in IBM Security Information Queue
CVE-2020-4284
5.3MEDIUM
What is CVE-2020-4284?
IBM Security Information Queue versions 1.0.0 to 1.0.5 are affected by a vulnerability that allows unauthorized users to potentially gain access to sensitive information. This issue arises from insufficient timeout functionality in the Web UI, which fails to secure sessions effectively. This flaw underscores the importance of robust session management protocols to protect user data from being improperly accessed.
Affected Version(s)
Security Information Queue 1.0.0
Security Information Queue 1.0.1
Security Information Queue 1.0.2