CVE-2024-56462: IBM QRadar SIEM is vulnerable to using components with known vulnerabilities
IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 002 could allow a privileged user to upload a malicious backup archive that could be restored and used to gain access to the underlying operating system.
Other sources
IBM QRadar SIEM could allow a privileged user to upload a malicious backup archive that could be restored and used to gain access to the underlying operating system.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-56462?
The severity of CVE-2024-56462 is rated high with a score of 8.8.
How do I fix CVE-2024-56462?
To fix CVE-2024-56462, IBM strongly encourages customers to update to IBM QRadar SIEM 7.5.0 UP15 Interim Fix 003.
What is the impact of CVE-2024-56462?
CVE-2024-56462 allows a privileged user to upload a malicious backup archive that could be restored to gain access to the underlying operating system.
Which versions of IBM QRadar are affected by CVE-2024-56462?
IBM QRadar versions 7.5.0 through 7.5.0 UP15 Interim Fix 002 are affected by CVE-2024-56462.
Who is at risk from CVE-2024-56462?
Privileged users of IBM QRadar SIEM may be at risk from CVE-2024-56462 due to the ability to exploit the vulnerability.