Information Disclosure in IBM QRadar SIEM Data Node Rebalancing
CVE-2022-22480

5.3MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
7 October 2022

What is CVE-2022-22480?

An issue has been identified in IBM QRadar SIEM versions 7.4 and 7.5 where the data node rebalancing process fails to function correctly when handling encrypted hosts. This misconfiguration may expose sensitive data, allowing unauthorized access to critical information, which poses a significant risk to data integrity and confidentiality. For more details, refer to the IBM support page and the IBM X-Force ID entry.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

QRadar SIEM 7.4.0

QRadar SIEM 7.5.0

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.