CVE-2017-1722: SQL Injection
IBM Security QRadar SIEM 7.2 and 7.3 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 134811.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1722?
CVE-2017-1722 is classified as a high-severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2017-1722?
To mitigate CVE-2017-1722, upgrade your IBM Security QRadar SIEM to the latest version recommended by IBM.
What versions of IBM QRadar are affected by CVE-2017-1722?
IBM QRadar SIEM versions 7.2.0 to 7.2.8 and 7.3.0 to 7.3.0-p7 are vulnerable to CVE-2017-1722.
Can CVE-2017-1722 be exploited remotely?
Yes, CVE-2017-1722 can be exploited remotely by sending specially crafted SQL statements.
What impact can a successful exploit of CVE-2017-1722 have?
Exploiting CVE-2017-1722 can allow attackers to view, add, modify, or delete information in the back-end database.