First published: Mon Nov 20 2023(Updated: )
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.11.0 and IBM QRadar Suite Software 1.10.12.0 through 1.10.16.0could allow an authenticated user to obtain sensitive version information that could aid in further attacks against the system. IBM X-Force ID: 233665.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cloud Pak for Security | >=1.10.0.0<=1.10.11.0 | |
IBM QRadar Suite | >=1.10.12.0<1.10.17.0 | |
<=1.10.0.0 - 1.10.11.0 | ||
<=1.10.12.0 - 1.10.16.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this security issue is CVE-2022-36777.
The title of this vulnerability is 'IBM Cloud Pak for Security information disclosure'.
The severity level of CVE-2022-36777 is medium with a value of 4.3.
IBM Cloud Pak for Security versions 1.10.0.0 to 1.10.11.0 and IBM QRadar Suite Software versions 1.10.12.0 to 1.10.16.0 are affected by CVE-2022-36777.
An authenticated user can exploit CVE-2022-36777 to obtain sensitive version information that could aid in further attacks against the system.