Session Management Flaw in IBM Concert Affects User Authentication
CVE-2024-43181
6.3MEDIUM
What is CVE-2024-43181?
IBM Concert versions 1.0.0 through 2.1.0 are susceptible to a session management vulnerability that fails to invalidate user sessions upon logout. This oversight enables an authenticated user to potentially impersonate another user, compromising the integrity and security of user accounts within the system. It is critical for users to apply the relevant security patches provided by IBM to safeguard against unauthorized access and maintain secure operations within their environment.
Affected Version(s)
Concert 1.0.0 <= 2.1.0