CVE-2021-39008

Severity
4.9MEDIUM
EPSS
0.1%
top 81.99%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 23
Latest updateNov 24

Description

IBM QRadar WinCollect Agent 10.0 through 10.1.7 could allow a privileged user to obtain sensitive information due to missing best practices. IBM X-Force ID: 213551.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:NExploitability: 1.2 | Impact: 1.4

Affected Packages2 packages

CVEListV5ibm/qradar_wincollect_agent10.010.1.7
NVDibm/qradar_wincollect10.010.1.7

Patches

🔴Vulnerability Details

2
GHSA
GHSA-m5j8-qcx5-8gx7: IBM QRadar WinCollect Agent 102023-11-24
CVEList
IBM QRadar WinCollect Agent information disclosure2023-11-23
CVE-2021-39008 (MEDIUM CVSS 4.9) | IBM QRadar WinCollect Agent 10.0 th | cvebase.io