Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-69rm-q725-53hr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a remote attacker to include arbitrary files. A remote attacker could send a specially-crafted request specify a malicious file from a remote system, which could allow the attacker to execute arbitrary code on the vulnerable server. IBM X-ForceID: 175898.

IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a remote attacker to include arbitrary files. A remote attacker could send a specially-crafted request specify a malicious file from a remote system, which could allow the attacker to execute arbitrary code on the vulnerable server. IBM X-ForceID: 175898.

EPSS

Процентиль: 90%
0.05106
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-22

Связанные уязвимости

CVSS3: 8.8
nvd
почти 6 лет назад

IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a remote attacker to include arbitrary files. A remote attacker could send a specially-crafted request specify a malicious file from a remote system, which could allow the attacker to execute arbitrary code on the vulnerable server. IBM X-ForceID: 175898.

EPSS

Процентиль: 90%
0.05106
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-22