CVE-2021-29779: Medium severity ibm qradar security information and event manager vulnerability
IBM QRadar could allow an attacker to obtain sensitive information due to the server performing key exchange without entity authentication on inter-host communications using man in the middle techniques.
Other sources
IBM QRadar SIEM 7.3 and 7.4 could allow an attacker to obtain sensitive information due to the server performing key exchange without entity authentication on inter-host communications using man in the middle techniques. IBM X-Force ID: 203033.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-29779?
CVE-2021-29779 has been classified with a medium severity level due to the possibility of sensitive information exposure.
How do I fix CVE-2021-29779?
To fix CVE-2021-29779, it is recommended to update IBM QRadar Security Information and Event Manager to the latest available fix packs.
Which versions of IBM QRadar are affected by CVE-2021-29779?
CVE-2021-29779 affects IBM QRadar versions 7.3 and 7.4, specifically versions prior to 7.3.3 and 7.4.3 respectively.
What type of attack is associated with CVE-2021-29779?
CVE-2021-29779 is associated with man-in-the-middle attacks that can exploit insecure key exchange processes.
Is CVE-2021-29779 easy to exploit?
CVE-2021-29779 may be considered relatively easy to exploit for attackers with access to the network where affected systems reside.