Lucene search

K
ibmIBMB974F8ADCFE87E9A194A3256FB2A24F20F6A8730744A172A71DAD2A0A97B6468
HistoryMar 21, 2024 - 10:21 a.m.

Security Bulletin: IBM QRadar SIEM M7 Appliances are vulnerable to CVE-2022-21216

2024-03-2110:21:35
www.ibm.com
18
ibm
qradar siem
m7 appliances
cve-2022-21216
intelatom
intel xeon
remote attacker
elevated privileges

7.5 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:L

7.1 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

Summary

IBM QRadar SIEM M7 Appliances could be vulnerable to an Intel CVE. IBM has addressed the relevant CVE.

Vulnerability Details

CVEID:CVE-2022-21216
**DESCRIPTION:**IntelAtom and Intel Xeon Scalable Processors could allow a remote authenticated attacker to gain elevated privileges on the system, caused by an insufficient granularity of access control in out-of-band management. By sending a specially-crafted request, an attacker could exploit this vulnerability to escalate privileges.
CVSS Base score: 7.5
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/247403 for the current score.
CVSS Vector: (CVSS:3.0/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:L)

Affected Products and Versions

Affected Product(s) Version(s)
IBM QRadar SIEM M7 Appliances All M7 Firmware versions before 4.0.0

Remediation/Fixes

Affected Product(s) Version(s) Firmware

IBM QRadar SIEM M7 Appliances

| 7.5| M7 4.0.0 ISO

Workarounds and Mitigations

None

Affected configurations

Vulners
Node
ibmibm_qradar_siemMatch7.5
CPENameOperatorVersion
ibm security qradar siemeq7.5

7.5 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:L

7.1 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%