Information Disclosure in IBM Security QRadar SIEM and QRadar Risk Manager
CVE-2014-6075

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
28 November 2014

Summary

The identified vulnerability in IBM Security QRadar SIEM and QRadar Risk Manager relates to improper handling of sensitive credentials by appending them to URLs. This flaw allows remote attackers to potentially access sensitive information through various means, such as examining web-server access logs, Referer logs, or by perusing the browser history. Such exposure can lead to unauthorized access and increased risks for compromised systems.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.