Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2022-36771
Disclosure Date: September 27, 2022 (last updated October 08, 2023)
IBM QRadar User Behavior Analytics could allow an authenticated user to obtain sensitive information from that they should not have access to. IBM X-Force ID: 232791.
0
Attacker Value
Unknown
CVE-2021-29757
Disclosure Date: July 30, 2021 (last updated February 23, 2025)
IBM QRadar User Behavior Analytics 4.1.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 202168.
0
Attacker Value
Unknown
CVE-2021-20429
Disclosure Date: May 13, 2021 (last updated February 22, 2025)
IBM QRadar User Behavior Analytics 1.0.0 through 4.1.0 could disclose sensitive information due an overly permissive cross-domain policy. IBM X-Force ID: 196334.
0
Attacker Value
Unknown
CVE-2021-20392
Disclosure Date: May 13, 2021 (last updated February 22, 2025)
IBM QRadar User Behavior Analytics 1.0.0 through 4.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
0
Attacker Value
Unknown
CVE-2021-20391
Disclosure Date: May 13, 2021 (last updated February 22, 2025)
IBM QRadar User Behavior Analytics 1.0.0 through 4.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 195999.
0
Attacker Value
Unknown
CVE-2021-20393
Disclosure Date: May 13, 2021 (last updated February 22, 2025)
IBM QRadar User Behavior Analytics 1.0.0 through 4.1.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196001.
0