CVE-2014-4826: Infoleak
IBM Security QRadar SIEM 7.2 before 7.2.3 Patch 1 does not properly handle SSH connections, which allows remote attackers to obtain sensitive cleartext information by sniffing the network.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4826?
CVE-2014-4826 is considered a high severity vulnerability due to its potential for remote exploitation and information leakage.
How do I fix CVE-2014-4826?
To remediate CVE-2014-4826, upgrade IBM Security QRadar SIEM to version 7.2.3 Patch 1 or later.
What affects CVE-2014-4826 in IBM QRadar?
CVE-2014-4826 affects IBM QRadar Security Information and Event Manager version 7.2.0 and earlier.
What type of attack does CVE-2014-4826 allow?
CVE-2014-4826 allows remote attackers to sniff network traffic and obtain sensitive cleartext information through improper handling of SSH connections.
Is CVE-2014-4826 still a concern for users of IBM QRadar?
Yes, users of affected versions of IBM QRadar should address CVE-2014-4826 immediately to protect against potential information disclosure.