CVE-2023-50961: IBM QRadar cross-site scripting
IBM QRadar could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.
Other sources
IBM QRadar SIEM 7.5 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 275939.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50961?
CVE-2023-50961 has been classified as a high severity vulnerability due to the potential for remote command execution.
How do I fix CVE-2023-50961?
To mitigate CVE-2023-50961, ensure you update IBM QRadar SIEM to a version that is not vulnerable, specifically above 7.5.0 UP7 IF06.
What type of attacks can CVE-2023-50961 facilitate?
CVE-2023-50961 can facilitate remote authenticated attackers executing arbitrary commands on the IBM QRadar system.
Which software versions are affected by CVE-2023-50961?
IBM QRadar SIEM versions up to and including 7.5.0 UP7 IF06 are affected by CVE-2023-50961.
Is authentication required to exploit CVE-2023-50961?
Yes, CVE-2023-50961 requires an authenticated user to exploit the vulnerability.