IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 16
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:-:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_1:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_10:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_11:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_12:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_13:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_14:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_2:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_3:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_4:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_5:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_6:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_7:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_8:*:*:*:*:*:*
|
— | — |
|
Ibm Qradar_Security_Information_And_Event_Manager
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_9:*:*:*:*:*:*
|
— | — |
|
Linux Linux_Kernel
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
|
— | — |