PT-2023-13364 · Ibm · Ibm Qradar Siem
Published
2023-02-17
·
Updated
2023-03-01
·
CVE-2022-34351
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM QRadar SIEM versions 7.4 through 7.5
Description
The issue allows a non-tenant user with a specific domain security profile assigned to see some data from other domains, resulting in information exposure.
Recommendations
For IBM QRadar SIEM versions 7.4 through 7.5, consider restricting access to sensitive data and domains to minimize the risk of information exposure until a fix is available.
Fix
Cleartext Storage of Sensitive Information
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Qradar Siem