IBM Security QRadar EDR 3.12 could disclose sensitive information due to an observable login response discrepancy. IBM X-Force ID: 257697.
The product provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor outside of the intended control sphere.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/7159770 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/257697 | vdb entry |