IBM QRadar SIEM CVE-2014-4830 Information Disclosure Weakness
BID:71077
Info
IBM QRadar SIEM CVE-2014-4830 Information Disclosure Weakness
| Bugtraq ID: | 71077 |
| Class: | Configuration Error |
| CVE: |
CVE-2014-4830 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 13 2014 12:00AM |
| Updated: | Nov 14 2014 12:04AM |
| Credit: | Paul Ionescu, Brennan Brazeau, John Zuccato, Jonathan Fitz-Gerald, and Warren Moynihan |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
IBM QRadar SIEM CVE-2014-4830 Information Disclosure Weakness
IBM QRadar Security Information and Event Management is prone to an information-disclosure weakness.
A successful exploit may allow attackers to steal cookie-based sensitive information; information harvested may aid in further attacks.
IBM QRadar Security Information and Event Management is prone to an information-disclosure weakness.
A successful exploit may allow attackers to steal cookie-based sensitive information; information harvested may aid in further attacks.
Exploit / POC
IBM QRadar SIEM CVE-2014-4830 Information Disclosure Weakness
An attacker can exploit this issue using readily available tools.
An attacker can exploit this issue using readily available tools.
Solution / Fix
IBM QRadar SIEM CVE-2014-4830 Information Disclosure Weakness
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
IBM QRadar SIEM CVE-2014-4830 Information Disclosure Weakness
References:
References: