PT-2024-5314 · Ibm · Ibm Qradar Siem
Published
2024-05-09
·
Updated
2024-05-14
·
CVE-2024-27269
CVSS v3.1
6.8
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM QRadar SIEM version 7.5
Description
The issue is related to the disclosure of protected information. It may allow a remote attacker to gain unauthorized access to sensitive information. A privileged user could configure user management in a way that discloses unintended sensitive information across tenants.
Recommendations
For IBM QRadar SIEM version 7.5, ensure that user management configurations do not disclose sensitive information across tenants, and review access controls to prevent unauthorized disclosure of protected information.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Qradar Siem