Remote Command Execution Vulnerability in IBM QRadar SIEM
CVE-2015-2011

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
4 October 2015

Summary

The xmlrpc.cgi Webmin script in IBM QRadar SIEM versions prior to Patch 11 IF02 for 7.1 MR2 and before 7.2.5 Patch 4 for 7.2.x contains a vulnerability that allows authenticated remote users to execute arbitrary commands with root privileges. This poses a significant risk as it can lead to unauthorized access and control over critical system functionalities.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.