Thursday, July 11, 2019

IBM Security Bulletin: IBM QRadar SIEM is vulnerable to Cross-Site Scripting (CVE-2018-2021)

Jul 11, 2019 9:02 am EDT

Categorized: Medium Severity

Share this post:

IBM QRadar SIEM could allow users to embed code in the UI that may lead to Cross-Site Scripting.

CVE(s): CVE-2018-2021

Affected product(s) and affected version(s):

· IBM QRadar 7.3 to 7.3.2 GA

· IBM QRadar 7.2 to 7.2.8 Patch 15

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10888117
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/155345



from IBM Product Security Incident Response Team https://ift.tt/2JECwx7

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.