CVE-2016-9727: Input Validation
IBM QRadar 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM Reference #: 1999542.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-9727?
CVE-2016-9727 has a high severity level, allowing remote authenticated attackers to execute arbitrary commands on affected systems.
How do I fix CVE-2016-9727?
To fix CVE-2016-9727, upgrade IBM QRadar Incident Forensics or Security Information and Event Manager to the latest version available.
Which software versions are affected by CVE-2016-9727?
CVE-2016-9727 affects IBM QRadar Incident Forensics and Security Information and Event Manager versions 7.2.0 through 7.2.8.
Can CVE-2016-9727 be exploited remotely?
Yes, CVE-2016-9727 can be exploited by remote authenticated attackers through specially crafted requests.
What impact does CVE-2016-9727 have on affected systems?
Successful exploitation of CVE-2016-9727 can lead to unauthorized execution of arbitrary commands, compromising the affected system's integrity.