PT-2022-3674 · Ibm · Ibm Qradar Network Security

Chris Shepherd

+8

·

Published

2022-07-12

·

Updated

2022-07-16

·

CVE-2020-4159

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM QRadar Network Security versions 5.4.0 through 5.5.0
Description The issue is related to insufficient protection of service data, which could allow a remote attacker to gain unauthorized access to protected information. This could potentially be used to mount further attacks against the system.
Recommendations For versions 5.4.0 and 5.5.0, consider restricting access to sensitive information to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-04461
CVE-2020-4159

Affected Products

Ibm Qradar Network Security