ZeroHour

CVE-2016-2876

CVSS 3.0
7.5 high
EPSS
2%p74
Published
()
Modified
Description

IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 executes unspecified processes at an incorrect privilege level, which makes it easier for remote authenticated users to obtain root access by leveraging a command-injection issue.

Vendors
ibm
Products
qradar security information and event manager
Weakness
CWE-78, CWE-264
Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.