First published: Mon Apr 06 2020(Updated: )
IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a local user to gain escalated privileges due to weak file permissions. IBM X-ForceID: 175846.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM QRadar Security Information and Event Manager | >=7.3.0<7.3.3 | |
IBM QRadar Security Information and Event Manager | =7.3.3 | |
IBM QRadar Security Information and Event Manager | =7.3.3-p1 | |
IBM QRadar Security Information and Event Manager | =7.3.3-p2 | |
Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-4270 is classified as high due to the potential for privilege escalation.
To fix CVE-2020-4270, it is recommended to update IBM QRadar to the latest patch or version that addresses the weak file permissions.
CVE-2020-4270 affects local users of IBM QRadar versions 7.3.0 to 7.3.3 Patch 2.
CVE-2020-4270 can be exploited to gain escalated privileges on systems running affected versions of IBM QRadar.
Yes, CVE-2020-4270 specifically impacts IBM QRadar Security Information and Event Manager.