First published: Fri Nov 28 2014(Updated: )
IBM Security QRadar SIEM and QRadar Risk Manager 7.1 before MR2 Patch 9 and 7.2 before 7.2.4 Patch 1, and QRadar Vulnerability Manager 7.2 before 7.2.4 Patch 1, allow remote attackers to hijack sessions via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM QRadar Risk Manager | =7.1.0 | |
IBM QRadar Risk Manager | =7.2.0 | |
IBM QRadar Risk Manager | =7.2.1 | |
IBM QRadar Risk Manager | =7.2.2 | |
IBM QRadar Risk Manager | =7.2.3 | |
IBM QRadar Risk Manager | =7.2.4 | |
IBM QRadar Vulnerability Manager | =7.2.0 | |
IBM QRadar Vulnerability Manager | =7.2.1 | |
IBM QRadar Vulnerability Manager | =7.2.2 | |
IBM QRadar Vulnerability Manager | =7.2.3 | |
IBM QRadar Vulnerability Manager | =7.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-4831 has been classified as a medium-severity vulnerability.
To resolve CVE-2014-4831, update IBM Security QRadar to the latest patches as specified by IBM.
CVE-2014-4831 affects IBM QRadar SIEM and QRadar Risk Manager versions 7.1 before MR2 Patch 9 and 7.2 before 7.2.4 Patch 1.
Yes, CVE-2014-4831 allows remote attackers to hijack sessions, potentially leading to unauthorized access.
CVE-2014-4831 impacts IBM QRadar Risk Manager and IBM QRadar Vulnerability Manager.