PT-2016-3592 · Ibm · Ibm Security Qradar Siem
John Zuccato
+3
·
Published
2016-02-15
·
Updated
2016-02-18
·
CVE-2015-2005
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Security QRadar SIEM versions 7.1.x through 7.1 MR2 Patch 11
IBM Security QRadar SIEM versions 7.2.x through 7.2.5 Patch 5
Description
The issue allows remote attackers to obtain sensitive information by leveraging an unattended workstation due to improper session expiration.
Recommendations
For IBM Security QRadar SIEM versions 7.1.x through 7.1 MR2 Patch 11, update to at least 7.1 MR2 Patch 12.
For IBM Security QRadar SIEM versions 7.2.x through 7.2.5 Patch 5, update to at least 7.2.5 Patch 6.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Security Qradar Siem