CVE-2024-22351

IBM InfoSphere Information 11.7 Server does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.
References
Link Resource
https://www.ibm.com/support/pages/node/7229921 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:ibm:infosphere_information_server:*:*:*:*:*:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

08 Jul 2025, 19:54

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:infosphere_information_server:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
First Time Microsoft
Linux
Ibm
Ibm aix
Microsoft windows
Ibm infosphere Information Server
Linux linux Kernel
References () https://www.ibm.com/support/pages/node/7229921 - () https://www.ibm.com/support/pages/node/7229921 - Vendor Advisory

29 Apr 2025, 13:52

Type Values Removed Values Added
Summary
  • (es) IBM InfoSphere Information 11.7 Server no invalida la sesión después de cerrar la sesión, lo que podría permitir que un usuario autenticado se haga pasar por otro usuario en el sistema.

23 Apr 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-23 23:15

Updated : 2025-07-08 19:54


NVD link : CVE-2024-22351

Mitre link : CVE-2024-22351

CVE.ORG link : CVE-2024-22351


JSON object : View

Products Affected

ibm

  • aix
  • infosphere_information_server

linux

  • linux_kernel

microsoft

  • windows
CWE
CWE-613

Insufficient Session Expiration