First published: Tue Dec 19 2023(Updated: )
IBM Qradar SIEM 7.5 could allow a privileged user to obtain sensitive domain information due to data being misidentified. IBM X-Force ID: 270372.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM QRadar Security Information and Event Manager | =7.5.0 | |
IBM QRadar Security Information and Event Manager | =7.5.0-update_pack_1 | |
IBM QRadar Security Information and Event Manager | =7.5.0-update_pack_2 | |
IBM QRadar Security Information and Event Manager | =7.5.0-update_pack_3 | |
IBM QRadar Security Information and Event Manager | =7.5.0-update_pack_4 | |
IBM QRadar Security Information and Event Manager | =7.5.0-update_pack_5 | |
IBM QRadar Security Information and Event Manager | =7.5.0-update_pack_6 | |
IBM QRadar Security Information and Event Manager | =7.5.0-update_pack_7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47146 has a moderate severity allowing privileged users to access sensitive information.
To fix CVE-2023-47146, apply the latest updates and patches provided by IBM for QRadar SIEM 7.5.
CVE-2023-47146 affects IBM QRadar Security Information and Event Manager version 7.5.0 and its update packs.
CVE-2023-47146 may expose sensitive domain information to a privileged user due to misidentified data.
Currently, there are no established workarounds for CVE-2023-47146 aside from applying the recommended updates.