Known vulnerabilities in IBM Qradar SIEM - page 63

Software CPE: cpe:2.3:a:ibm_corporation:ibm_qradar_siem:*:*:*:*:*:*:*:*
Total vulnerabilities: 1402
Public exploits: 87
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Qradar SIEM IBM Qradar SIEM is affected by 1402 known vulnerabilities: 8 critical, 140 high, 438 medium, 816 low Critical High Medium Low

Vulnerabilities (1402)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72159 - Improper Access Control
CVE-2022-34351
CWE-284 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 13.02.2023 SB2023021331
#VU71190 - Incorrect Default Permissions
CVE-2023-22875
CWE-276 Low
No
No
- 16.01.2023 SB2023011643
#VU69531 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-25168
CWE-78 High
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 23.11.2022 SB2022112314
SB2022112334
SB2022121525
and 10 more
#VU68722 - Improper Authorization
CVE-2022-41974
CWE-285 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 26.10.2022 SB2022102601
SB2022102602
SB2022102603
and 43 more
#VU67550 - Missing release of memory after effective lifetime
CVE-2022-38178
CWE-401 Medium
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 21.09.2022 SB2022092131
SB2022092140
SB2022092147
and 48 more
#VU67549 - Missing release of memory after effective lifetime
CVE-2022-38177
CWE-401 Medium
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 21.09.2022 SB2022092131
SB2022092140
SB2022092143
and 52 more
#VU67532 - Use After Free
CVE-2022-40674
CWE-416 High
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 21.09.2022 SB2022092118
SB2022092119
SB2022092317
and 111 more
#VU66757 - Use After Free
CVE-2022-2526
CWE-416 Medium
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 25.08.2022 SB2022082509
SB2022082511
SB2022082531
and 48 more
#VU66429 - Permissions, Privileges, and Access Controls
CVE-2022-2625
CWE-264 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 12.08.2022 SB2022081212
SB2022081848
SB2022082547
and 40 more
#VU66189 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-29154
CWE-22 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 08.08.2022 SB2022080837
SB2022081645
SB2022081649
and 70 more
#VU64376 - Incomplete cleanup
CVE-2022-21127
CWE-459 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 14.06.2022 SB2022061463
SB2022061464
SB2022061630
and 36 more
#VU64364 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21123
CWE-200 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 14.06.2022 SB2022061454
SB2022061465
SB2022061463
and 97 more
#VU64365 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21125
CWE-200 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 14.06.2022 SB2022061454
SB2022061467
SB2022061463
and 96 more
#VU64366 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21166
CWE-200 Low
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 14.06.2022 SB2022061454
SB2022061466
SB2022061463
and 102 more
#VU60604 - Improper input validation
CVE-2021-0156
CWE-20 Low
No
No
- 15.02.2022 SB2022021505
SB2022031813
SB2022121917
and 1 more
#VU60600 - Out-of-bounds write
CVE-2021-0116
CWE-787 Low
No
No
- 15.02.2022 SB2022021505
SB2022031813
SB2022111730
and 4 more
#VU60493 - Improper input validation
CVE-2021-0127
CWE-20 Low
No
No
- 10.02.2022 SB2022021007
SB2022031814
SB2022062041
and 13 more
#VU60492 - Out-of-bounds read
CVE-2021-33120
CWE-125 Low
No
No
- 10.02.2022 SB2022021006
SB2022062041
SB2022072838
and 7 more
#VU60491 - Exposure of sensitive information to an unauthorized actor
CVE-2021-0145
CWE-200 Low
No
No
- 10.02.2022 SB2022021005
SB2022062041
SB2022072838
and 7 more
#VU52449 - Improper input validation
CVE-2021-2163
CWE-20 Medium
No
No
7.4.3 Fix Pack 8, 7.5.0 Update Pack 4 21.04.2021 SB2021042115
SB2021042116
SB2021042117
and 99 more


Showing elements 1241 - 1260 out of 1402