Lucene search

K
nvd[email protected]NVD:CVE-2022-36771
HistorySep 28, 2022 - 4:15 p.m.

CVE-2022-36771

2022-09-2816:15:12
web.nvd.nist.gov
3
ibm qradar
user behavior analytics
authenticated user
data access
vulnerability

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

35.0%

IBM QRadar User Behavior Analytics could allow an authenticated user to obtain sensitive information from that they should not have access to. IBM X-Force ID: 232791.

Affected configurations

Nvd
Node
ibmqradar_user_behavior_analyticsRange<4.1.9
VendorProductVersionCPE
ibmqradar_user_behavior_analytics*cpe:2.3:a:ibm:qradar_user_behavior_analytics:*:*:*:*:*:*:*:*

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

35.0%

Related for NVD:CVE-2022-36771