← Back

CVE-2019-4262

nvd nist
Published: Sep 26, 2019Modified: Nov 21, 2024

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

IBM QRadar SIEM 7.2 and 7.3 is vulnerable to Server Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the QRadar system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 160014.

Affected (23)

1 product
Configuration A
23 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 7.2.0 to 7.2.8
From 7.3.0 to 7.3.2
Version 7.2.8
Version 7.2.8 p10
Version 7.2.8 p11
Version 7.2.8 p12
Version 7.2.8 p13
Version 7.2.8 p14
Version 7.2.8 p15
Version 7.2.8 p16
Version 7.2.8 p1
Version 7.2.8 p2
Version 7.2.8 p3
Version 7.2.8 p4
Version 7.2.8 p5
Version 7.2.8 p6
Version 7.2.8 p7
Version 7.2.8 p8
Version 7.2.8 p9
Version 7.3.2
Version 7.3.2 p1
Version 7.3.2 p2
Version 7.3.2 p3

References (4)

Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: psirt@us.ibm.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.