First published: Tue Jun 18 2024(Updated: )
IBM QRadar Suite Software 1.10.12.0 through 1.10.21.0 and IBM Cloud Pak for Security 1.10.12.0 through 1.10.21.0 could allow an authenticated user to execute certain arbitrary commands due to improper input validation. IBM X-Force ID: 272087.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM QRadar Suite | >=1.10.12.0<=1.10.21.0 | |
IBM Cloud Pak for Security | >=1.10.12.0<=1.10.21.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47726 is rated as a high-severity vulnerability due to its potential to allow arbitrary command execution by authenticated users.
To fix CVE-2023-47726, update IBM QRadar Suite Software to version 1.10.22.0 or later, and IBM Cloud Pak for Security to version 1.10.22.0 or later.
CVE-2023-47726 affects users of IBM QRadar Suite Software versions 1.10.12.0 to 1.10.21.0 and IBM Cloud Pak for Security versions 1.10.12.0 to 1.10.21.0.
CVE-2023-47726 is classified as an input validation vulnerability that can be exploited to execute arbitrary commands.
No, CVE-2023-47726 requires authenticated access, so it cannot be exploited remotely without user credentials.