CVE-2015-4930: Command Injection
IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote authenticated users to execute arbitrary commands with root privileges by leveraging admin access.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4930?
CVE-2015-4930 is considered a high severity vulnerability due to potential remote execution of arbitrary commands with root privileges.
How do I fix CVE-2015-4930?
To fix CVE-2015-4930, apply Patch 11 IF02 for QRadar SIEM 7.1 MR2 or upgrade to QRadar SIEM 7.2.5 Patch 4 or later versions.
Who is affected by CVE-2015-4930?
CVE-2015-4930 affects IBM QRadar SIEM versions 7.1 MR2 before Patch 11 IF02 and 7.2.x prior to 7.2.5 Patch 4.
What type of attack does CVE-2015-4930 enable?
CVE-2015-4930 enables remote authenticated users to execute arbitrary commands on the system as root.
Is there a workaround for CVE-2015-4930?
There is no documented workaround for CVE-2015-4930; applying the appropriate patches is the only mitigation.