CVE-2021-20431

IBM i2 Analyst's Notebook Premium 9.2.0, 9.2.1, and 9.2.2 does not invalidate session after logout which could allow an an attacker to obtain sensitive information from the system. IBM X-Force ID: 196342.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
ibmCNA
4.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.0/I:N/A:N/AV:N/UI:R/C:L/AC:L/PR:N/S:U/RL:O/E:U/RC:C
CVEADP
---
---