Lucene search

K
ibmIBM4A01050E4C6D585A8D3030DDABED018292FBB42D0EA8B02850C040D15AA14A5A
HistoryJul 12, 2022 - 4:04 a.m.

Security Bulletin: IBM QRadar Network Security is affected by Information Exposure PenTest vulnerabilities.(ase id:462657, ase id:462667)

2022-07-1204:04:03
www.ibm.com
9
ibm qradar
network security
information exposure
pentest
cve-2020-4159
vulnerability
firmware update
ibm security license key

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

43.3%

Summary

IBM QRadar Network Security has addressed the following PenTest vulnerabilities. 1. X-Powered-By header reveals Servlet/3.0 is in use. 2. Stack trace visible through help docs.

Vulnerability Details

CVEID:CVE-2020-4159
**DESCRIPTION:**IBM QRadar Network Security discloses sensitive information to unauthorized users which could be used to mount further attacks against the system.
CVSS Base score: 5.3
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/174339 for the current score.
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)

Affected Products and Versions

IBM QRadar Network Security 5.4.0

IBM QRadar Network Security 5.5.0

Remediation/Fixes

Product |

VRMF

|

Remediation/First Fix

—|—|—

IBM QRadar Network Security

|

5.4.0

|

Install Firmware 5.4.0.16 from the Available Updates page of the

Local Management Interface, or by performing a One Time Scheduled

Installation from SiteProtector.

Or
Download Firmware 5.4.0.16 from

IBM Security License Key and Download Center and upload and

install via the Available Updates page of the Local Management Interface.

IBM QRadar Network Security

|

5.5.0

|

Install Firmware 5.5.0.11 from the Available Updates page of the

Local Management Interface, or by performing a One Time Scheduled

Installation from SiteProtector.

Or
Download Firmware 5.5.0.11 from

IBM Security License Key and Download Center and upload and

install via the Available Updates page of the Local Management Interface.

Workarounds and Mitigations

None

Affected configurations

Vulners
Node
ibmqradar_network_securityMatch5.4.0
OR
ibmqradar_network_securityMatch5.5.0
VendorProductVersionCPE
ibmqradar_network_security5.4.0cpe:2.3:a:ibm:qradar_network_security:5.4.0:*:*:*:*:*:*:*
ibmqradar_network_security5.5.0cpe:2.3:a:ibm:qradar_network_security:5.5.0:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

43.3%

Related for 4A01050E4C6D585A8D3030DDABED018292FBB42D0EA8B02850C040D15AA14A5A