IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could disclose sensitive information using man in the middle techniques due to not correctly enforcing all aspects of certificate validation in some circumstances. IBM X-Force ID: 272533.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 | Vendor Advisory |
https://www.ibm.com/support/pages/node/7129328 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 | Vendor Advisory |
https://www.ibm.com/support/pages/node/7129328 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
23 Dec 2024, 18:01
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:ibm:qradar_suite:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:cloud_pak_for_security:*:*:*:*:*:*:*:* |
|
First Time |
Ibm qradar Suite
Ibm cloud Pak For Security Ibm |
|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 - Vendor Advisory | |
References | () https://www.ibm.com/support/pages/node/7129328 - Vendor Advisory |
21 Nov 2024, 08:30
Type | Values Removed | Values Added |
---|---|---|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 - | |
References | () https://www.ibm.com/support/pages/node/7129328 - |
20 Sep 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-295 |
03 Mar 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-03 13:15
Updated : 2024-12-23 18:01
NVD link : CVE-2023-47742
Mitre link : CVE-2023-47742
CVE.ORG link : CVE-2023-47742
JSON object : View
Products Affected
ibm
- qradar_suite
- cloud_pak_for_security
CWE
CWE-295
Improper Certificate Validation