CVE-2018-1649: Path Traversal
IBM QRadar Incident Forensics 7.2 and 7.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 144655.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1649?
CVE-2018-1649 is considered to have a medium severity level as it allows directory traversal leading to potential information disclosure.
How do I fix CVE-2018-1649?
To fix CVE-2018-1649, apply the latest patches provided by IBM for affected versions of QRadar Incident Forensics.
What versions are affected by CVE-2018-1649?
CVE-2018-1649 affects IBM QRadar Incident Forensics versions 7.2.0 through 7.2.8 and 7.3.0 through 7.3.1.
Can CVE-2018-1649 be exploited remotely?
Yes, CVE-2018-1649 can be exploited remotely by sending specially-crafted URL requests to the affected system.
What are the potential impacts of CVE-2018-1649?
The potential impacts of CVE-2018-1649 include unauthorized access to sensitive files and data leakage from the affected system.