PT-2015-6726 · Ibm · Ibm Qradar Siem
John Zuccato
+3
·
Published
2015-10-04
·
Updated
2016-11-28
·
CVE-2015-4930
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM QRadar SIEM versions 7.1 MR2 before Patch 11 IF02
IBM QRadar SIEM versions 7.2.x before 7.2.5 Patch 4
Description
The issue allows remote authenticated users to execute arbitrary commands with root privileges by leveraging admin access.
Recommendations
For IBM QRadar SIEM version 7.1 MR2, apply Patch 11 IF02 to resolve the issue.
For IBM QRadar SIEM version 7.2.x, apply Patch 4 to version 7.2.5 to resolve the issue.
Fix
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Qradar Siem