PT-2021-12265 · Ibm · Ibm Qradar Siem
Published
2021-07-16
·
Updated
2022-07-12
·
CVE-2020-4980
CVSS v3.1
6.5
Medium
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM QRadar SIEM versions 7.3 through 7.4
Description
The issue concerns the use of less secure methods for protecting data in transit between hosts when the
encrypt host connections option is not enabled, as well as data at rest.Recommendations
For IBM QRadar SIEM versions 7.3 and 7.4, enable the
encrypt host connections option to protect data in transit between hosts.
As a temporary workaround, consider restricting access to sensitive data at rest until a more secure method of protection is implemented.Fix
Cleartext Transmission of Sensitive Information
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Qradar Siem