CVE-2017-1162: Infoleak
Published Sep 12, 2017
·Updated
IBM QRadar 7.2 and 7.3 discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 122957.
Affected Software
10 affected components
IBM QRadar Security Information and Event Manager=7.2.0
IBM QRadar Security Information and Event Manager=7.2.1
IBM QRadar Security Information and Event Manager=7.2.2
IBM QRadar Security Information and Event Manager=7.2.3
IBM QRadar Security Information and Event Manager=7.2.4
IBM QRadar Security Information and Event Manager=7.2.5
IBM QRadar Security Information and Event Manager=7.2.6
IBM QRadar Security Information and Event Manager=7.2.7
IBM QRadar Security Information and Event Manager=7.2.8
IBM QRadar Security Information and Event Manager=7.3.0
Remediation
Patch Available
Event History
Sep 12, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1162?
CVE-2017-1162 has a medium severity rating due to its potential to expose sensitive information to unauthorized users.
2
How do I fix CVE-2017-1162?
To fix CVE-2017-1162, apply the latest patches provided by IBM for affected versions of QRadar.
3
Which versions of IBM QRadar are affected by CVE-2017-1162?
CVE-2017-1162 affects IBM QRadar versions 7.2.0 through 7.3.0.
4
What type of information is disclosed by CVE-2017-1162?
CVE-2017-1162 discloses sensitive information that can be exploited for further attacks against the system.
5
Is there a workaround for CVE-2017-1162?
There are no specific workarounds for CVE-2017-1162; applying the latest updates is the recommended course of action.