CVE-2020-4980: Medium severity ibm qradar security information and event manager vulnerability
IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest. IBM X-Force ID: 192539.
Other sources
IBM QRadar SIEM uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM QRadar SIEM vulnerability?
The vulnerability ID for this IBM QRadar SIEM vulnerability is CVE-2020-4980.
What is the severity level of CVE-2020-4980?
The severity level of CVE-2020-4980 is medium with a severity value of 6.5.
What versions of IBM QRadar SIEM are affected by CVE-2020-4980?
IBM QRadar SIEM versions 7.3.0 to 7.3.3 and versions 7.4.0 to 7.4.3 are affected by CVE-2020-4980.
How does CVE-2020-4980 affect data protection in transit and at rest?
CVE-2020-4980 affects data protection in transit between hosts when encrypt host connections is not enabled, as well as data at rest.
Where can I find more information about CVE-2020-4980?
You can find more information about CVE-2020-4980 in the IBM X-Force ID: 192539 and on the IBM support pages.