CVE-2018-1728Cross-site Scripting in IBM Qradar Incident Forensics

Severity
5.4MEDIUMNVD
EPSS
0.2%
top 63.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 5
Latest updateMay 13

Description

IBM QRadar SIEM 7.2 and 7.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 147707.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:NExploitability: 2.3 | Impact: 2.7

Affected Packages2 packages

CVEListV5ibm/qradar_siem7.2, 7.3+1
NVDibm/qradar_incident_forensics7.2.07.2.8+3

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2q8r-rff3-pj9q: IBM QRadar SIEM 72022-05-13
CVEList
CVE-2018-1728: IBM QRadar SIEM 72018-12-05

💥Exploits & PoCs

1
Exploit-DB
Microsoft Internet Explorer 11 (Windows 7 x86/x64) - vbscript Code Execution2018-05-21
CVE-2018-1728 — Cross-site Scripting in IBM | cvebase