Описание
Cross-site request forgery (CSRF) vulnerability in IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers to hijack the authentication of administrators for requests that modify console Auto Update settings.
Cross-site request forgery (CSRF) vulnerability in IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers to hijack the authentication of administrators for requests that modify console Auto Update settings.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2014-0835
- https://exchange.xforce.ibmcloud.com/vulnerabilities/90678
- http://osvdb.org/102554
- http://seclists.org/fulldisclosure/2014/Jan/166
- http://secunia.com/advisories/56653
- http://thomaspollet.blogspot.be/2014/01/ibm-qradar-siem-csrf-xss-mitm-rce.html
- http://www-01.ibm.com/support/docview.wss?uid=swg21663066
- http://www.securityfocus.com/bid/65127
Связанные уязвимости
nvd
около 12 лет назад
Cross-site request forgery (CSRF) vulnerability in IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers to hijack the authentication of administrators for requests that modify console Auto Update settings.