PT-2015-5540 · Ibm · Ibm Security Qradar Incident Forensics
John Zuccato
+3
·
Published
2015-11-08
·
Updated
2015-11-09
·
CVE-2015-1996
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Security QRadar Incident Forensics versions 7.2.x through 7.2.5 before Patch 5
Description
The issue allows physically proximate attackers to obtain sensitive local-cache information by leveraging an unattended workstation, due to the failure to prevent caching of HTTPS responses.
Recommendations
For IBM Security QRadar Incident Forensics versions 7.2.x through 7.2.5 before Patch 5, apply Patch 5 to address the issue.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Security Qradar Incident Forensics