CVE-2020-4888: Critical severity IBM QRadar Security Information and Event Manager vulnerability
IBM QRadar SIEM 7.4.0 to 7.4.2 Patch 1 and 7.3.0 to 7.3.3 Patch 7 could allow a remote attacker to execute arbitrary commands on the system, caused by insecure deserialization of user-supplied content by the Java deserialization function. By sending a malicious serialized Java object, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 190912.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-4888?
The severity of CVE-2020-4888 is critical with a CVSS score of 8.8.
How can a remote attacker exploit the vulnerability?
A remote attacker can exploit the vulnerability by sending a malicious serialized Java object.
Which versions of IBM QRadar SIEM are affected by this vulnerability?
The vulnerability affects IBM QRadar SIEM versions 7.3.0 to 7.3.3 Patch 7 and 7.4.0 to 7.4.2 Patch 1.
How does the vulnerability occur?
The vulnerability is caused by insecure deserialization of user-supplied content by the Java deserialization function.
Are there any patches or fixes available?
Yes, patches are available for IBM QRadar SIEM versions 7.4.0 to 7.4.2 Patch 1 and 7.3.0 to 7.3.3 Patch 7.