CVE-2018-2024: High severity IBM QRadar Security Information and Event Manager vulnerability
Published Jul 22, 2019
·Updated
IBM QRadar SIEM 7.2 and 7.3 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 155350.
Affected Software
2 affected components
IBM QRadar Security Information and Event Manager=7.2.0
IBM QRadar Security Information and Event Manager=7.3.0
Remediation
Patch Available
Event History
Jul 22, 2019
CVE Published
via MITRE·01:35 PM
Data Sourced
via MITRE·01:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-2024?
CVE-2018-2024 has been classified as a high severity vulnerability.
2
How do I fix CVE-2018-2024?
To fix CVE-2018-2024, update IBM QRadar SIEM to the latest patched version.
3
What are the affected versions in CVE-2018-2024?
CVE-2018-2024 affects IBM QRadar SIEM versions 7.2.0 and 7.3.0.
4
What impact does CVE-2018-2024 have on IBM QRadar SIEM?
CVE-2018-2024 allows unintended actors to read or modify security-critical resources in IBM QRadar SIEM.
5
Is CVE-2018-2024 exploitable remotely?
CVE-2018-2024 can be exploited by unauthorized users with network access to the IBM QRadar SIEM.