← back
CVE-2018-1612medium

CVE-2018-1612

60Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendcvss 5.8epss 57%
from disclosure to weapon0 days
Published on NVDJul 17
1st PoCJul 11
metasploitMay 28
exploitation probability
57%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
In short

IBM QRadar Incident Forensics in versions 7.2 and 7.3 has a flaw that allows someone to skip the login process and access sensitive information without proper credentials.

Technical detail

A remote authentication bypass vulnerability exists in IBM QRadar Incident Forensics 7.2 and 7.3, enabling unauthenticated access to sensitive data. The attack vector is network-based with no user interaction required, and successful exploitation results in unauthorized information disclosure.

Summary generated and translated by AI from the official description.
IBM QRadar Incident Forensics (IBM QRadar SIEM 7.2, and 7.3) could allow a remote attacker to bypass authentication and obtain sensitive information. IBM X-Force ID: 144164.
CVSS:3.0/A:N/AC:L/AV:N/C:L/I:N/PR:N/S:C/UI:N/E:U/RC:C/RL:O
Affected products
IBM · QRadar SIEM
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.