Information Disclosure in IBM QRadar SIEM Data Node Rebalancing
CVE-2022-22480
5.3MEDIUM
Summary
An issue has been identified in IBM QRadar SIEM versions 7.4 and 7.5 where the data node rebalancing process fails to function correctly when handling encrypted hosts. This misconfiguration may expose sensitive data, allowing unauthorized access to critical information, which poses a significant risk to data integrity and confidentiality. For more details, refer to the IBM support page and the IBM X-Force ID entry.
Affected Version(s)
QRadar SIEM 7.4.0
QRadar SIEM 7.5.0
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved