CVE-2023-50951

Severity
4.3MEDIUM
EPSS
0.1%
top 79.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 17

Description

IBM QRadar Suite 1.10.12.0 through 1.10.17.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 in some circumstances will log some sensitive information about invalid authorization attempts. IBM X-Force ID: 275747.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 2.5 | Impact: 1.4

Affected Packages4 packages

NVDibm/qradar_suite1.10.12.01.10.18.0
CVEListV5ibm/qradar_suite_software1.10.12.01.10.17.0
CVEListV5ibm/cloud_pak_for_security1.10.0.01.10.11.0
NVDibm/cloud_pak1.10.0.01.10.11.0

🔴Vulnerability Details

2
CVEList
IBM QRadar Suite information disclosure2024-02-17
GHSA
GHSA-w427-3xrr-2ccq: IBM QRadar Suite 12024-02-17
CVE-2023-50951 (MEDIUM CVSS 4.3) | IBM QRadar Suite 1.10.12.0 through | cvebase.io