First published: Tue Apr 14 2020(Updated: )
IBM QRadar could allow an authenticated attacker to perform unauthorized actions due to improper input validation.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM QRadar Security Information and Event Manager | >=7.3.0<=7.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4151 is considered a medium-severity vulnerability due to improper input validation in IBM QRadar.
To fix CVE-2020-4151, upgrade IBM QRadar Security Information and Event Manager to version 7.3.4 or later.
CVE-2020-4151 affects IBM QRadar versions 7.3.0 through 7.3.3.
CVE-2020-4151 requires authentication, as the exploit can only be performed by an authenticated attacker.
CVE-2020-4151 allows authenticated attackers to perform unauthorized actions within IBM QRadar.