CVE-2024-27269: IBM QRadar SIEM information disclosure
IBM QRadar SIEM 7.5 could allow a privileged user to configure user management that would disclose unintended sensitive information across tenants. IBM X-Force ID: 284575.
Other sources
IBM QRadar SIEM could allow a privileged user to configure user management that would disclose unintended sensitive information across tenants.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-27269?
CVE-2024-27269 is classified as a high severity vulnerability due to its potential to allow privileged users to access sensitive information across tenants.
How do I fix CVE-2024-27269?
To fix CVE-2024-27269, update IBM QRadar SIEM to the latest version beyond 7.5.0 UP8 IF01 that addresses this vulnerability.
Who is affected by CVE-2024-27269?
CVE-2024-27269 affects users of IBM QRadar SIEM versions up to and including 7.5.0 UP8 IF01.
What kind of information does CVE-2024-27269 expose?
CVE-2024-27269 could expose unintended sensitive information configured by privileged users across different tenants.
What is the CVE ID of the vulnerability related to IBM QRadar SIEM user management?
The CVE ID for this vulnerability is CVE-2024-27269.