IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could disclose sensitive information using man in the middle techniques due to not correctly enforcing all aspects of certificate validation in some circumstances. IBM X-Force ID: 272533.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 | Vendor Advisory |
https://www.ibm.com/support/pages/node/7129328 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 | Vendor Advisory |
https://www.ibm.com/support/pages/node/7129328 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
23 Dec 2024, 18:01
Type | Values Removed | Values Added |
---|---|---|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 - Vendor Advisory | |
References | () https://www.ibm.com/support/pages/node/7129328 - Vendor Advisory | |
CPE | cpe:2.3:a:ibm:cloud_pak_for_security:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_suite:*:*:*:*:*:*:*:* |
|
First Time |
Ibm
Ibm cloud Pak For Security Ibm qradar Suite |
21 Nov 2024, 08:30
Type | Values Removed | Values Added |
---|---|---|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/272533 - | |
References | () https://www.ibm.com/support/pages/node/7129328 - |
20 Sep 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CWE | CWE-295 |
03 Mar 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-03 13:15
Updated : 2024-12-23 18:01
NVD link : CVE-2023-47742
Mitre link : CVE-2023-47742
CVE.ORG link : CVE-2023-47742
JSON object : View
Products Affected
ibm
- cloud_pak_for_security
- qradar_suite
CWE
CWE-295
Improper Certificate Validation