CVE-2023-33861: IBM Security ReaQta improper certificate validation
IBM Security ReaQta could allow an attacker to spoof a trusted entity by interfering with the communication path between the host and client.
Other sources
IBM Security ReaQta EDR 3.12 could allow an attacker to spoof a trusted entity by interfering with the communication path between the host and client.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-33861?
CVE-2023-33861 is classified as a high severity vulnerability due to its potential to allow trusted entity spoofing.
How do I fix CVE-2023-33861?
To remediate CVE-2023-33861, ensure that IBM Security ReaQta and Security QRadar EDR are updated to the latest patch version.
Who is affected by CVE-2023-33861?
CVE-2023-33861 affects users of IBM Security ReaQta and IBM Security QRadar EDR versions up to and including 3.12.
What could an attacker do with CVE-2023-33861?
An attacker exploiting CVE-2023-33861 could spoof a trusted entity by manipulating communication between the host and client.
Is CVE-2023-33861 being actively exploited in the wild?
As of the latest information, there are no confirmed reports of CVE-2023-33861 being actively exploited in the wild.