QID 378490
Date Published: 2023-06-21
QID 378490: IBM QRadar SIEM Information Disclosure Vulnerability (6855643)
IBM QRadar SIEM copies certificate key files used for SSL/TLS in the QRadar web user interface to managed hosts in the deployment that do not required that key.
Affected Versions:
IBM QRadar SIEM 7.4.0 to 7.4.3 Fix Pack 8
IBM QRadar SIEM 7.3.0 to 7.5.0 Update Pack 4 Interim Fix 1
QID Detection Logic:
It checks for vulnerable versions of IBM QRadar.
IBM QRadar SIEM is vulnerable to possible information disclosure.
Solution
The vendor has released patch for the product.
6855643
6855643
CVEs related to QID 378490
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 6855643 |
|