CVE-2021-39088Improper Privilege Management in IBM Qradar Security Information AND Event Manager

Severity
7.8HIGHNVD
EPSS
0.0%
top 85.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 28
Latest updateJul 29

Description

IBM QRadar SIEM 7.3, 7.4, and 7.5 is vulnerable to local privilege escalation if this could be combined with other unknown vulnerabilities then privilege escalation could be performed. IBM X-Force ID: 216111.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5ibm/qradar_siem7.3, 7.4, 7.5+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-37rh-j478-6h3c: IBM QRadar SIEM 72022-07-29
CVEList
CVE-2021-39088: IBM QRadar SIEM 72022-07-28
CVE-2021-39088 — Improper Privilege Management in IBM | cvebase