CVE-2014-6075: Infoleak
IBM Security QRadar SIEM and QRadar Risk Manager 7.1 before MR2 Patch 9 and 7.2 before 7.2.4 Patch 1, and QRadar Vulnerability Manager 7.2 before 7.2.4 Patch 1, place credentials in URLs, which allows remote attackers to obtain sensitive information by reading (1) web-server access logs, (2) web-server Referer logs, or (3) the browser history.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6075?
CVE-2014-6075 has a moderate severity level due to potential exposure of sensitive credentials through URLs.
How do I fix CVE-2014-6075?
To fix CVE-2014-6075, upgrade IBM QRadar SIEM or QRadar Risk Manager to version 7.1 MR2 Patch 9 or 7.2.4 Patch 1 or later.
Which software versions are affected by CVE-2014-6075?
Affected versions include IBM QRadar Risk Manager 7.1 before MR2 Patch 9 and 7.2 before 7.2.4 Patch 1, as well as QRadar Vulnerability Manager 7.2 before 7.2.4 Patch 1.
What type of information can be exposed due to CVE-2014-6075?
CVE-2014-6075 can expose sensitive information, such as user credentials, by allowing access through web server logs.
Is there a way to mitigate risks associated with CVE-2014-6075 without upgrading?
No specific mitigation strategies exist for CVE-2014-6075; upgrading to the patched versions is strongly recommended.