QID 379279

Date Published: 2024-02-05

QID 379279: IBM QRadar SIEM Information Disclosure Vulnerability (7108657)

IBM QRadar SIEM (Security Information and Event Management) is a modular architecture that provides real-time visibility of your IT infrastructure, which you can use for threat detection and prioritization.

CVE-2023-50950: IBM QRadar could disclose sensitive email information in responses from offense rules.

Affected Versions:
IBM QRadar SIEM 7.5 to 7.5.0 Update Pack 7

QID Detection Logic:
It checks for vulnerable versions of IBM QRadar.

Successful exploitation of this vulnerability could allow a privileged user to disclose sensitive email information.

  • CVSS V3 rated as Medium - 5.3 severity.
  • CVSS V2 rated as Low - 2.1 severity.
  • Solution
    The vendor has released patch for the product.
    7108657
    Vendor References

    CVEs related to QID 379279

    Software Advisories
    Advisory ID Software Component Link
    7108657 URL Logo www.ibm.com/support/pages/node/7108657