QID 378490

Date Published: 2023-06-21

QID 378490: IBM QRadar SIEM Information Disclosure Vulnerability (6855643)

IBM QRadar SIEM copies certificate key files used for SSL/TLS in the QRadar web user interface to managed hosts in the deployment that do not required that key.

Affected Versions:
IBM QRadar SIEM 7.4.0 to 7.4.3 Fix Pack 8
IBM QRadar SIEM 7.3.0 to 7.5.0 Update Pack 4 Interim Fix 1
QID Detection Logic:
It checks for vulnerable versions of IBM QRadar.

IBM QRadar SIEM is vulnerable to possible information disclosure.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Critical - 9 severity.
  • Solution
    The vendor has released patch for the product.
    6855643

    CVEs related to QID 378490

    Software Advisories
    Advisory ID Software Component Link
    6855643 URL Logo www.ibm.com/support/pages/security-bulletin-ibm-qradar-siem-vulnerable-possible-information-disclosure-cve-2023-22875