CVE-2019-4054: Medium severity IBM QRadar Security Information and Event Manager vulnerability
Published Jul 17, 2019
·Updated
IBM QRadar SIEM 7.2 and 7.3 could allow a local user to obtain sensitive information when exporting content that could aid an attacker in further attacks against the system. IBM X-Force ID: 156563.
Affected Software
2 affected components
IBM QRadar Security Information and Event Manager>=7.2.0<=7.2.8.15
IBM QRadar Security Information and Event Manager>=7.3.0<=7.3.2
Remediation
Patch Available
Event History
Jul 17, 2019
CVE Published
via MITRE·02:05 PM
Data Sourced
via MITRE·02:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-4054?
CVE-2019-4054 is rated as a medium severity vulnerability that could lead to sensitive information exposure.
2
What systems are affected by CVE-2019-4054?
CVE-2019-4054 affects IBM QRadar SIEM versions 7.2 and 7.3, specifically up to versions 7.2.8.15 and 7.3.2.
3
How do I fix CVE-2019-4054?
To fix CVE-2019-4054, update your IBM QRadar SIEM to the latest versions as recommended by IBM.
4
What kind of information is at risk with CVE-2019-4054?
CVE-2019-4054 could allow local users to export content that includes sensitive information, aiding potential attackers.
5
Is authentication required to exploit CVE-2019-4054?
Yes, CVE-2019-4054 requires local access in order to exploit the vulnerability.