cbcvebase.
CVE-2024-22355
published 2024-03-03

CVE-2024-22355: IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 does not require that users should have strong…

medium5.9CVSS 3.1
AVNACHPRNUINSUCHINAN
IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 280781.

Affected

3 ranges
VendorProductVersion rangeFixed in
ibmcloud_pak_for_security1.10.0.0 – 1.10.11.0
ibmqradar_suite1.10.12.0 – 1.10.18.0
ibmqradar_suite_products1.10.12.0 – 1.10.18.0