Ibm Qradar Security Information And Event Manager vulnerabilities
190 known vulnerabilities affecting ibm/qradar_security_information_and_event_manager.
Total CVEs
190
CISA KEV
2
actively exploited
Public exploits
5
Exploited in wild
2
Severity breakdown
CRITICAL10HIGH56MEDIUM112LOW12
Vulnerabilities
Page 1 of 10
CVE-2014-6271P1CRITICALCVSS 9.8KEVPoCv7.1.0v7.1.1+13 more2014-09-24
CVE-2014-6271 [CRITICAL] CWE-78 CVE-2014-6271: GNU Bash through 4.3 processes trailing strings after function definitions in the values of environm
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts execute
nvd
CVE-2014-7169P1CRITICALCVSS 9.8KEVPoCv7.1.0v7.1.1+13 more2014-09-25
CVE-2014-7169 [CRITICAL] CVE-2014-7169: GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definiti
GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgi
nvd
CVE-2018-1418P2HIGHCVSS 8.8PoC≥ 7.2.0, < 7.2.8v7.2.8+2 more2018-04-26
CVE-2018-1418 [HIGH] CWE-287 CVE-2018-1418: IBM Security QRadar SIEM 7.2 and 7.3 could allow a user to bypass authentication which could lead to
IBM Security QRadar SIEM 7.2 and 7.3 could allow a user to bypass authentication which could lead to code execution. IBM X-Force ID: 138824.
nvd
CVE-2020-4280P2HIGHCVSS 8.8≥ 7.3.0, ≤ 7.3.3≥ 7.4.0, ≤ 7.4.1+1 more2020-10-08
CVE-2020-4280 [HIGH] CWE-502 CVE-2020-4280: IBM QRadar SIEM 7.3 and 7.4 could allow a remote attacker to execute arbitrary commands on the syste
IBM QRadar SIEM 7.3 and 7.4 could allow a remote attacker to execute arbitrary commands on the system, caused by insecure deserialization of user-supplied content by the Java deserialization function. By sending a malicious serialized Java object, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 1
nvd
CVE-2018-1612P2MEDIUMCVSS 5.8PoC≥ 7.2.0, ≤ 7.2.8v7.2.8+2 more2018-07-17
CVE-2018-1612 [MEDIUM] CWE-200 CVE-2018-1612: IBM QRadar Incident Forensics (IBM QRadar SIEM 7.2, and 7.3) could allow a remote attacker to bypass
IBM QRadar Incident Forensics (IBM QRadar SIEM 7.2, and 7.3) could allow a remote attacker to bypass authentication and obtain sensitive information. IBM X-Force ID: 144164.
nvd
CVE-2020-4888P2HIGHCVSS 8.8v7.3.0v7.3.1+5 more2021-01-28
CVE-2020-4888 [HIGH] CWE-502 CVE-2020-4888: IBM QRadar SIEM 7.4.0 to 7.4.2 Patch 1 and 7.3.0 to 7.3.3 Patch 7 could allow a remote attacker to e
IBM QRadar SIEM 7.4.0 to 7.4.2 Patch 1 and 7.3.0 to 7.3.3 Patch 7 could allow a remote attacker to execute arbitrary commands on the system, caused by insecure deserialization of user-supplied content by the Java deserialization function. By sending a malicious serialized Java object, an attacker could exploit this vulnerability to execute arbitrary com
nvd
CVE-2018-1571P2HIGHCVSS 8.8≥ 7.2.0, ≤ 7.2.7v7.2.8+2 more2018-09-11
CVE-2018-1571 [HIGH] CVE-2018-1571: IBM QRadar 7.2 and 7.3 could allow a remote authenticated attacker to execute arbitrary commands on
IBM QRadar 7.2 and 7.3 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 143121.
nvd
CVE-2016-9726P3HIGHCVSS 8.8v7.2.0v7.2.1+7 more2017-03-07
CVE-2016-9726 [HIGH] CWE-20 CVE-2016-9726: IBM QRadar Incident Forensics 7.2 could allow a remote authenticated attacker to execute arbitrary c
IBM QRadar Incident Forensics 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM Reference #: 1999542.
nvd
CVE-2020-4979P3CRITICALCVSS 9.8≥ 7.3.0, < 7.3.3≥ 7.4.0, < 7.4.2+2 more2021-05-05
CVE-2020-4979 [CRITICAL] CVE-2020-4979: IBM QRadar SIEM 7.3 and 7.4 is vulnerable to insecure inter-deployment communication. An attacker th
IBM QRadar SIEM 7.3 and 7.4 is vulnerable to insecure inter-deployment communication. An attacker that is able to comprimise or spoof traffic between hosts may be able to execute arbitrary commands. IBM X-Force D: 192538.
nvd
CVE-2020-4272P3HIGHCVSS 8.8≥ 7.3.0, < 7.3.3v7.3.32020-04-15
CVE-2020-4272 [HIGH] CWE-22 CVE-2020-4272: IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a remote attacker to include arbitrary files. A remote
IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a remote attacker to include arbitrary files. A remote attacker could send a specially-crafted request specify a malicious file from a remote system, which could allow the attacker to execute arbitrary code on the vulnerable server. IBM X-ForceID: 175898.
nvd
CVE-2017-1696P3HIGHCVSS 8.8v7.3.02017-12-20
CVE-2017-1696 [HIGH] CWE-20 CVE-2017-1696: IBM QRadar 7.2 and 7.3 could allow a remote authenticated attacker to execute arbitrary commands on
IBM QRadar 7.2 and 7.3 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 134178.
nvd
CVE-2024-56462P3HIGHCVSS 8.8v7.5.02026-05-27
CVE-2024-56462 [HIGH] CWE-530 CVE-2024-56462: IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 002 could allow a privileged user to upload a malici
IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 002 could allow a privileged user to upload a malicious backup archive that could be restored and used to gain access to the underlying operating system.
nvd
CVE-2016-9727P3HIGHCVSS 8.5v7.2.0v7.2.1+7 more2017-03-07
CVE-2016-9727 [HIGH] CWE-20 CVE-2016-9727: IBM QRadar 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the syst
IBM QRadar 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM Reference #: 1999542.
nvd
CVE-2016-2875P3HIGHCVSS 8.8v7.1.0v7.2.0+6 more2016-08-08
CVE-2016-2875 [HIGH] CWE-77 CVE-2016-2875: IBM Security QRadar SIEM 7.1.x and 7.2.x before 7.2.7 allows remote authenticated users to execute a
IBM Security QRadar SIEM 7.1.x and 7.2.x before 7.2.7 allows remote authenticated users to execute arbitrary OS commands as root via unspecified vectors.
nvd
CVE-2025-33117P3CRITICALCVSS 9.1v7.5.02025-06-19
CVE-2025-33117 [CRITICAL] CWE-73 CVE-2025-33117: IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 could allow a privileged user to modify configu
IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 could allow a privileged user to modify configuration files that would allow the upload of a malicious autoupdate file to execute arbitrary commands.
nvd
CVE-2016-9722P3MEDIUMCVSS 4.2PoCv7.2.0v7.2.1+8 more2018-01-10
CVE-2016-9722 [MEDIUM] CWE-284 CVE-2016-9722: IBM QRadar 7.2 and 7.3 specifies permissions for a security-critical resource in a way that allows t
IBM QRadar 7.2 and 7.3 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. IBM X-Force ID: 119737.
nvd
CVE-2015-4930P3CRITICALCVSS 9.0v7.1.0v7.2.0+4 more2015-10-04
CVE-2015-4930 [CRITICAL] CWE-77 CVE-2015-4930: IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote authentica
IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote authenticated users to execute arbitrary commands with root privileges by leveraging admin access.
nvd
CVE-2015-2016P3CRITICALCVSS 9.0v7.1.0v7.2.0+4 more2015-10-04
CVE-2015-2016 [CRITICAL] CVE-2015-2016: Unspecified vulnerability in IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Pat
Unspecified vulnerability in IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote authenticated users to execute arbitrary commands with root privileges via unknown vectors.
nvd
CVE-2015-2011P3CRITICALCVSS 9.0v7.1.0v7.2.0+4 more2015-10-04
CVE-2015-2011 [CRITICAL] CWE-77 CVE-2015-2011: The xmlrpc.cgi Webmin script in IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5
The xmlrpc.cgi Webmin script in IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote authenticated users to execute arbitrary commands with root privileges via unspecified vectors.
nvd
CVE-2021-20399P3CRITICALCVSS 9.1≥ 7.3.0, < 7.3.3≥ 7.4.0, < 7.4.3+2 more2021-07-27
CVE-2021-20399 [CRITICAL] CWE-611 CVE-2021-20399: IBM Qradar SIEM 7.3.0 to 7.3.3 Patch 8 and 7.4.0 to 7.4.3 GA is vulnerable to an XML External Entity
IBM Qradar SIEM 7.3.0 to 7.3.3 Patch 8 and 7.4.0 to 7.4.3 GA is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 196073.
nvd
1 / 10Next →