CVE-2014-0837
30.01.2014, 05:17
The AutoUpdate process in IBM Security QRadar SIEM 7.2 MR1 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers via a crafted certificate.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | qradar_security_information_and_event_manager | 𝑥 ≤ 7.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References