Lucene search

K

Soar Qradar Plugin App Security Vulnerabilities

cve
cve

CVE-2023-38019

IBM SOAR QRadar Plugin App 1.0 through 5.0.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 260575.

8.1CVSS

6.2AI Score

0.001EPSS

2024-02-02 04:15 AM
29
cve
cve

CVE-2023-38020

IBM SOAR QRadar Plugin App 1.0 through 5.0.3 could allow an authenticated user to manipulate output written to log files. IBM X-Force ID: 260576.

4.3CVSS

4.3AI Score

0.0004EPSS

2024-02-02 04:15 AM
18
cve
cve

CVE-2023-38263

IBM SOAR QRadar Plugin App 1.0 through 5.0.3 could allow an authenticated user to perform unauthorized actions due to improper access controls. IBM X-Force ID: 260577.

8.8CVSS

8.2AI Score

0.0005EPSS

2024-02-02 04:15 AM
17