peter bassill · operator
$ cve CVE-2018-1612 JSON

CVE-2018-1612 EXPLOIT

5.8
MEDIUM · CVSS 3.0 · EPSS 55.7% (pctl 99)

Patch early

A public exploit exists.

Description

IBM QRadar Incident Forensics (IBM QRadar SIEM 7.2, and 7.3) could allow a remote attacker to bypass authentication and obtain sensitive information. IBM X-Force ID: 144164.

Scoring

CVSS5.8 (MEDIUM, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
EPSS55.67% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-200
On CISA KEVno
Public exploityes
Published2018-07-17
Last modified2026-06-17

Affected (1)

VendorProduct
ibmqradar security information and event manager

Public exploits

SourceTitleDate
exploit-dbIBM QRadar SIEM - Remote Code Execution (Metasploit)2018-07-11

References

→ the Explorer  ·  watch your stack  ·  NVD