Vulnerabilities
Vulnerable Software
Ibm:  >> Cloud Pak For Security  Security Vulnerabilities
IBM Cloud Pak for Security 1.3.0.1(CP4S) does not invalidate session after logout which could allow an authenticated user to obtain sensitive information from the previous session. IBM X-Force ID: 186789.
CVSS Score
5.3
EPSS Score
0.001
Published
2020-11-30
IBM Cloud Pak for Security 1.3.0.1 (CP4S) uses weaker than expected cryptographic algorithms during negotiation could allow an attacker to decrypt sensitive information.
CVSS Score
3.7
EPSS Score
0.001
Published
2020-11-30
IBM Cloud Pak for Security 1.3.0.1(CP4S) could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain sensitive information from the cookie.
CVSS Score
4.0
EPSS Score
0.001
Published
2020-11-30


Contact Us

Shodan ® - All rights reserved