Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7g5-m2wx-p588

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

IBM Security QRadar SIEM 7.1.x before 7.1 MR2 Patch 12 and 7.2.x before 7.2.6 includes SSH private keys during backup operations, which allows remote authenticated administrators to obtain sensitive information by reading a backup archive.

IBM Security QRadar SIEM 7.1.x before 7.1 MR2 Patch 12 and 7.2.x before 7.2.6 includes SSH private keys during backup operations, which allows remote authenticated administrators to obtain sensitive information by reading a backup archive.

EPSS

Процентиль: 41%
0.0019
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 4.4
nvd
почти 10 лет назад

IBM Security QRadar SIEM 7.1.x before 7.1 MR2 Patch 12 and 7.2.x before 7.2.6 includes SSH private keys during backup operations, which allows remote authenticated administrators to obtain sensitive information by reading a backup archive.

EPSS

Процентиль: 41%
0.0019
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-284