PT-2023-13364 · Ibm · Ibm Qradar Siem
CVE-2022-34351
·
Publicado
2023-02-17
·
Atualizado
2023-03-01
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM QRadar SIEM versions 7.4 through 7.5
Description
The issue allows a non-tenant user with a specific domain security profile assigned to see some data from other domains, resulting in information exposure.
Recommendations
For IBM QRadar SIEM versions 7.4 through 7.5, consider restricting access to sensitive data and domains to minimize the risk of information exposure until a fix is available.
Correção
Cleartext Storage of Sensitive Information
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Ibm Qradar Siem