Vulnerability Bulletins

IBM Security Bulletin: IBM QRadar SIEM is vulnerable to shell command injection vulnerability in the admin panel. (CVE-2015-4930, CVE-2015-2016 )

   
Affected software IBM
 
IBM QRadar SIEM is vulnerable to a shell command injection the in admin panel if logged in as an admin user. CVE(s): CVE-2015-4930 and CVE-2015-2016 Affected product(s) and affected version(s): · IBM QRadar SIEM 7.2.x. · IBM QRadar SIEM 7.1 MR2 Patch 1 - Patch 10. Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21965813 X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_qradar_siem_is_vulnerable_to_shell_command_injection_vulnerability_in_the_admin_panel_cve_2015_4930_cve_2015_2016?lang=en_us