Lucene search

K
cvelistIbmCVELIST:CVE-2022-36771
HistorySep 28, 2022 - 3:55 p.m.

CVE-2022-36771

2022-09-2815:55:16
ibm
www.cve.org
2
ibm qradar
user behavior analytics
sensitive information

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C

AI Score

6.1

Confidence

High

EPSS

0.001

Percentile

35.0%

IBM QRadar User Behavior Analytics could allow an authenticated user to obtain sensitive information from that they should not have access to. IBM X-Force ID: 232791.

CNA Affected

[
  {
    "product": "QRadar User Behavior Analytics",
    "vendor": "IBM",
    "versions": [
      {
        "status": "affected",
        "version": "4.1.8"
      }
    ]
  }
]

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C

AI Score

6.1

Confidence

High

EPSS

0.001

Percentile

35.0%

Related for CVELIST:CVE-2022-36771