CVE-2024-43181

IBM Concert 1.0.0 through 2.1.0 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.
References
Link Resource
https://www.ibm.com/support/pages/node/7257006 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:concert:*:*:*:*:*:*:*:*

History

05 Feb 2026, 20:44

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7257006 - () https://www.ibm.com/support/pages/node/7257006 - Vendor Advisory
First Time Ibm concert
Ibm
CPE cpe:2.3:a:ibm:concert:*:*:*:*:*:*:*:*

04 Feb 2026, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-04 22:15

Updated : 2026-02-05 20:44


NVD link : CVE-2024-43181

Mitre link : CVE-2024-43181

CVE.ORG link : CVE-2024-43181


JSON object : View

Products Affected

ibm

  • concert
CWE
CWE-613

Insufficient Session Expiration