Vulnerability Details CVE-2021-38986
IBM MQ Appliance 9.2 CD and 9.2 LTS does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 212942.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.4%
CVSS Severity
CVSS v3 Score 5.6
CVSS v2 Score 5.5
Products affected by CVE-2021-38986
-
Ibm
»
Mq
»
Version: 9.2.0
-
Ibm
»
Mq
»
Version: 9.2.0.0
-
Ibm
»
Mq
»
Version: 9.2.0.1
-
Ibm
»
Mq
»
Version: 9.2.0.2
-
Ibm
»
Mq
»
Version: 9.2.0.3
-
Ibm
»
Mq
»
Version: 9.2.1
-
Ibm
»
Mq
»
Version: 9.2.1.0
-
Ibm
»
Mq
»
Version: 9.2.2
-
Ibm
»
Mq
»
Version: 9.2.3
-
Ibm
»
Mq
»
Version: 9.2.4