Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2019-4262

IBM QRadar SIEM 7.2 and 7.3 is vulnerable to Server Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the QRadar system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 160014.

  • Published: Sep 26, 2019
  • Updated: Apr 13, 2023
  • CVE: CVE-2019-4262
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.3
  • AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:P/I:N/A:N

CWEs:

Software From Fixed in
ibm / qradar_security_information_and_event_manager 7.2.8-p2 7.2.8-p2.x
ibm / qradar_security_information_and_event_manager 7.2.8-p1 7.2.8-p1.x
ibm / qradar_security_information_and_event_manager 7.2.8-p5 7.2.8-p5.x
ibm / qradar_security_information_and_event_manager 7.2.8-p6 7.2.8-p6.x
ibm / qradar_security_information_and_event_manager 7.2.8-p3 7.2.8-p3.x
ibm / qradar_security_information_and_event_manager 7.2.8-p4 7.2.8-p4.x
ibm / qradar_security_information_and_event_manager 7.2.0 7.2.8
ibm / qradar_security_information_and_event_manager 7.2.8-p7 7.2.8-p7.x
ibm / qradar_security_information_and_event_manager 7.2.8-p8 7.2.8-p8.x
ibm / qradar_security_information_and_event_manager 7.2.8-p9 7.2.8-p9.x
ibm / qradar_security_information_and_event_manager 7.2.8-p10 7.2.8-p10.x
ibm / qradar_security_information_and_event_manager 7.2.8-p11 7.2.8-p11.x
ibm / qradar_security_information_and_event_manager 7.2.8-p12 7.2.8-p12.x
ibm / qradar_security_information_and_event_manager 7.2.8-p13 7.2.8-p13.x
ibm / qradar_security_information_and_event_manager 7.2.8 7.2.8.x
ibm / qradar_security_information_and_event_manager 7.3.2 7.3.2.x
ibm / qradar_security_information_and_event_manager 7.2.8-p14 7.2.8-p14.x
ibm / qradar_security_information_and_event_manager 7.2.8-p15 7.2.8-p15.x
ibm / qradar_security_information_and_event_manager 7.3.2-p1 7.3.2-p1.x
ibm / qradar_security_information_and_event_manager 7.3.0 7.3.2
ibm / qradar_security_information_and_event_manager 7.2.8-p16 7.2.8-p16.x
ibm / qradar_security_information_and_event_manager 7.3.2-p2 7.3.2-p2.x
ibm / qradar_security_information_and_event_manager 7.3.2-p3 7.3.2-p3.x