IBM QRadar SIEM 7.5 through 7.5.0 UP13 could allow an authenticated user to escalate their privileges via a misconfigured cronjob due to execution with unnecessary privileges.
| Software | From | Fixed in |
|---|---|---|
| ibm / qradar_incident_forensics | 7.5.0 | 7.5.0.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_1 | 7.5.0-update_pack_1.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_10 | 7.5.0-update_pack_10.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_11 | 7.5.0-update_pack_11.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_12 | 7.5.0-update_pack_12.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_13 | 7.5.0-update_pack_13.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_2 | 7.5.0-update_pack_2.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_3 | 7.5.0-update_pack_3.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_4 | 7.5.0-update_pack_4.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_5 | 7.5.0-update_pack_5.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_6 | 7.5.0-update_pack_6.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_7 | 7.5.0-update_pack_7.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_8 | 7.5.0-update_pack_8.x |
| ibm / qradar_incident_forensics | 7.5.0-update_pack_9 | 7.5.0-update_pack_9.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0 | 7.5.0.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_1 | 7.5.0-update_pack_1.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_10 | 7.5.0-update_pack_10.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_11 | 7.5.0-update_pack_11.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_12 | 7.5.0-update_pack_12.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_13 | 7.5.0-update_pack_13.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_2 | 7.5.0-update_pack_2.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_3 | 7.5.0-update_pack_3.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_4 | 7.5.0-update_pack_4.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_5 | 7.5.0-update_pack_5.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_6 | 7.5.0-update_pack_6.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_7 | 7.5.0-update_pack_7.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_8 | 7.5.0-update_pack_8.x |
| ibm / qradar_security_information_and_event_manager | 7.5.0-update_pack_9 | 7.5.0-update_pack_9.x |