IBM QRadar SIEM 7.5 is vulnerable to information exposure allowing a delegated Admin tenant user with a specific domain security profile assigned to see data from other domains. This vulnerability is due to an incomplete fix for CVE-2022-34352. IBM X-Force ID: 266808.
2023-10-29T01:15:41.007
2024-11-21T08:23:38.537
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | qradar_security_information_and_event_manager | 7.5.0 | Yes |
Application | ibm | qradar_security_information_and_event_manager | 7.5.0 | Yes |
Application | ibm | qradar_security_information_and_event_manager | 7.5.0 | Yes |
Application | ibm | qradar_security_information_and_event_manager | 7.5.0 | Yes |
Application | ibm | qradar_security_information_and_event_manager | 7.5.0 | Yes |
Application | ibm | qradar_security_information_and_event_manager | 7.5.0 | Yes |
Application | ibm | qradar_security_information_and_event_manager | 7.5.0 | Yes |