IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest. IBM X-Force ID: 192539.
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/6472891 | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/192539 | vdb entry vendor advisory |