NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18860  CVE-2016-2878  Multiple cross-site request forgery (CSRF) vulnerabilities in IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 allow remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.    Medium  2017-01-19  2016-12-22  View
18859  CVE-2016-2877  IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 uses weak permissions for unspecified directories under the web root, which allows local users to modify data by writing to a file.    2.1  Low  2017-01-19  2016-12-22  View
18858  CVE-2016-2876  IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 executes unspecified processes at an incorrect privilege level, which makes it easier for remote authenticated users to obtain root access by leveraging a command-injection issue.    8.5  High  2017-01-19  2016-12-22  View
18857  CVE-2016-2875  IBM Security QRadar SIEM 7.1.x and 7.2.x before 7.2.7 allows remote authenticated users to execute arbitrary OS commands as root via unspecified vectors.    High  2017-01-19  2016-11-28  View
18856  CVE-2016-2874  IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 mishandles authorization, which allows remote authenticated users to obtain sensitive information via unspecified vectors.    3.5  Low  2017-01-19  2016-12-22  View

Page 1988 of 17672, showing 5 records out of 88360 total, starting on record 9936, ending on 9940

Actions