IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest. IBM X-Force ID: 192539.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/192539 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6472891 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
12 Jul 2022, 17:42
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-312 |
30 Jul 2021, 16:19
Type | Values Removed | Values Added |
---|---|---|
References | (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/192539 - VDB Entry, Vendor Advisory | |
References | (CONFIRM) https://www.ibm.com/support/pages/node/6472891 - Patch, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 3.3
v3 : 6.5 |
CWE | CWE-319 | |
CPE | cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.4.3:-:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:p4:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:p1:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:p3:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:p6:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:p2:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:p7:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:-:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.3.3:p5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
16 Jul 2021, 17:43
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-07-16 17:15
Updated : 2024-02-04 21:47
NVD link : CVE-2020-4980
Mitre link : CVE-2020-4980
CVE.ORG link : CVE-2020-4980
JSON object : View
Products Affected
ibm
- qradar_security_information_and_event_manager
linux
- linux_kernel