CVE-2014-0835 Information

Description

Cross-site request forgery (CSRF) vulnerability in IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers to hijack the authentication of administrators for requests that modify console Auto Update settings.

Reference

http://osvdb.org/102554 http://seclists.org/fulldisclosure/2014/Jan/166 http://secunia.com/advisories/56653 http://thomaspollet.blogspot.be/2014/01/ibm-qradar-siem-csrf-xss-mitm-rce.html http://www.securityfocus.com/bid/65127 http://www-01.ibm.com/support/docview.wss?uid=swg21663066 https://exchange.xforce.ibmcloud.com/vulnerabilities/90678

Share on: