Log Source Management App for IBM QRadar SIEM is vulnerable in many ways

Because multiple components are vulnerable, attackers can attack systems with Log Source Management App for IBM QRadar SIEM.

listen Print view
Woman taps on hologram with the word "Update"

(Image: Alfa Photo/Shutterstock.com)

1 min. read

In the current version of the Log Source Management App for the IT security solution IBM QRadar SIEM, the developers have closed several vulnerabilities that could allow attackers to compromise systems.

In a warning message, the developers explain that they have closed several vulnerabilities in various components in the 7.0.11 release. All previous versions are said to be vulnerable. The majority of the vulnerabilities are classified as"high". Attackers can use them for DoS attacks (CVE-2024-45590), among other things. If this works, servers can crash.

However, this also includes a"critical" vulnerability with the highest rating (CVE-2024-47875 CVSS score 10 out of 10). If an attack is successful, malicious code can reach systems in the course of an mXSS attack.

Videos by heise

So far, there are no reports of attacks already in progress. However, admins should not wait too long to install the security update.

(des)

Don't miss any news – follow us on Facebook, LinkedIn or Mastodon.

This article was originally published in German. It was translated with technical assistance and editorially reviewed before publication.