Show filters
171 Total Results
Displaying 21-30 of 171
Sort by:
Attacker Value
Unknown

CVE-2022-22480

Disclosure Date: October 04, 2022 (last updated October 08, 2023)
IBM QRadar SIEM 7.4 and 7.5 data node rebalancing does not function correctly when using encrypted hosts which could result in information disclosure. IBM X-Force ID: 225889.
Attacker Value
Unknown

CVE-2022-30613

Disclosure Date: October 04, 2022 (last updated October 08, 2023)
IBM QRadar SIEM 7.4 and 7.5 could disclose sensitive information via a local service to a privileged user. IBM X-Force ID: 227366.
Attacker Value
Unknown

CVE-2021-39088

Disclosure Date: July 26, 2022 (last updated October 08, 2023)
IBM QRadar SIEM 7.3, 7.4, and 7.5 is vulnerable to local privilege escalation if this could be combined with other unknown vulnerabilities then privilege escalation could be performed. IBM X-Force ID: 216111.
Attacker Value
Unknown

CVE-2021-38936

Disclosure Date: July 19, 2022 (last updated October 07, 2023)
IBM QRadar SIEM 7.3, 7.4, and 7.5 could disclose highly sensitive information to a privileged user. IBM X-Force ID: 210893.
Attacker Value
Unknown

CVE-2022-22424

Disclosure Date: July 19, 2022 (last updated February 24, 2025)
IBM QRadar SIEM 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information from the TLS key file due to incorrect file permissions. IBM X-Force ID: 223597.
Attacker Value
Unknown

CVE-2021-29755

Disclosure Date: July 19, 2022 (last updated February 24, 2025)
IBM QRadar SIEM 7.3, 7.4, and 7.5 does not preform proper certificate validation for some inter-host communications. IBM X-Force ID: 202015.
Attacker Value
Unknown

CVE-2021-39041

Disclosure Date: July 11, 2022 (last updated October 07, 2023)
IBM QRadar SIEM 7.3, 7.4, and 7.5 may be vulnerable to partial denial of service attack, resulting in some protocols not listening to specified ports. IBM X-Force ID: 214028.
Attacker Value
Unknown

CVE-2022-22320

Disclosure Date: May 10, 2022 (last updated February 23, 2025)
IBM QRadar SIEM 7.3 and 7.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 218367.
Attacker Value
Unknown

CVE-2021-38878

Disclosure Date: April 25, 2022 (last updated February 23, 2025)
IBM QRadar 7.3, 7.4, and 7.5 could allow a malicious actor to impersonate an actor due to key exchange without entity authentication. IBM X-Force ID: 208756.
Attacker Value
Unknown

CVE-2021-38939

Disclosure Date: April 25, 2022 (last updated February 23, 2025)
IBM QRadar SIEM 7.3, 7.4, and 7.5 stores potentially sensitive information in log files that could be read by an user with access to creating domains. IBM X-Force ID: 211037.