First published: Wed Nov 22 2023(Updated: )
IBM QRadar WinCollect Agent 10.0 through 10.1.7 could allow a local user to perform unauthorized actions due to improper encoding. IBM X-Force ID: 248160.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM QRadar WinCollect | >=10.0<=10.1.7 | |
<=10.0-10.1.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-26279 is a vulnerability in IBM QRadar WinCollect Agent 10.0 through 10.1.7 that could allow a local user to perform unauthorized actions due to improper encoding.
The severity of CVE-2023-26279 is low with a CVSS score of 3.3.
A local user can exploit CVE-2023-26279 by performing unauthorized actions due to improper encoding.
Yes, IBM has provided a fix for CVE-2023-26279. Please refer to the IBM support page for more information.
The CWE ID for CVE-2023-26279 is 116.