cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-40230,https://securityvulnerability.io/vulnerability/CVE-2022-40230,Session Management Flaw in IBM MQ Appliance,"IBM MQ Appliance versions 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS contain a vulnerability where user sessions are not invalidated after logout. This oversight can potentially allow an authenticated user to impersonate another user, posing a significant risk to system security. Proper session handling is crucial to prevent unauthorized access and ensure user integrity. For further information, visit IBM's official documentation.",IBM,IBM MQ Appliance,6.5,MEDIUM,0.0005000000237487257,false,,false,false,false,,,false,false,,2022-11-03T00:00:00.000Z,0 CVE-2019-4239,https://securityvulnerability.io/vulnerability/CVE-2019-4239,,IBM MQ Advanced Cloud Pak (IBM Cloud Private 1.0.0 through 3.0.1) stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 159465.,IBM,"MQ Advanced Cloud Pak (IBM Cloud Private),MQ Advanced Cloud Pak (IBM Cloud Private On Red Hat Openshift)",6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2019-06-14T15:29:00.000Z,0