PT-2026-5867 · Ibm · Ibm Concert

Published

2026-02-04

·

Updated

2026-02-04

·

CVE-2024-43181

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions IBM Concert versions 1.0.0 through 2.1.0
Description The software does not invalidate user sessions after logout. This could allow an authenticated user to impersonate another user on the system.
Recommendations Update to a version later than 2.1.0.

Fix

Insufficient Session Expiration

Weakness Enumeration

Related Identifiers

CVE-2024-43181

Affected Products

Ibm Concert