CVE-2015-1995: XSS
Multiple cross-site scripting (XSS) vulnerabilities in IBM Security QRadar Incident Forensics 7.2.x before 7.2.5 Patch 5 allow remote attackers to inject arbitrary web script or HTML via a crafted URL.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1995?
CVE-2015-1995 is considered to have a medium severity due to its potential to allow remote attackers to execute arbitrary web scripts.
How do I fix CVE-2015-1995?
To fix CVE-2015-1995, upgrade IBM Security QRadar Incident Forensics to version 7.2.5 Patch 5 or later.
What versions of IBM Security QRadar Incident Forensics are affected by CVE-2015-1995?
CVE-2015-1995 affects IBM Security QRadar Incident Forensics versions 7.2.0 through 7.2.4.
Can CVE-2015-1995 lead to data breaches?
Yes, CVE-2015-1995 can potentially lead to data breaches through exploitation of the XSS vulnerabilities.
Who is primarily at risk from CVE-2015-1995?
Organizations using affected versions of IBM Security QRadar Incident Forensics are primarily at risk from CVE-2015-1995.