CVE-2016-9750: Medium severity ibm qradar security information and event manager vulnerability
Published May 15, 2017
·Updated
IBM QRadar 7.2 and 7.3 stores user credentials in plain in clear text which can be read by an authenticated user. IBM X-Force ID: 120207.
Affected Software
2 affected components
IBM QRadar Security Information and Event Manager=7.2.0
IBM QRadar Security Information and Event Manager=7.3.0
Event History
May 15, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-9750?
CVE-2016-9750 has a medium severity rating due to the exposure of user credentials in plain text.
2
How do I fix CVE-2016-9750?
To fix CVE-2016-9750, upgrade IBM QRadar to a version that addresses this vulnerability, such as newer releases beyond 7.3.
3
Who is affected by CVE-2016-9750?
Users of IBM QRadar versions 7.2.0 and 7.3.0 are affected by the vulnerability CVE-2016-9750.
4
What are the potential impacts of CVE-2016-9750?
The potential impacts of CVE-2016-9750 include unauthorized access to user credentials and increased risk of account compromise.
5
Is there a workaround for CVE-2016-9750?
A temporary workaround for CVE-2016-9750 is to limit access to the QRadar system to trusted and authenticated users only.