CVE Vulnerabilities

CVE-2016-9738

Published: Jun 27, 2017 | Modified: Apr 20, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM QRadar 7.2 and 7.3 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 119783.

Affected Software

NameVendorStart VersionEnd Version
Qradar_security_information_and_event_managerIbm7.2.0 (including)7.2.0 (including)
Qradar_security_information_and_event_managerIbm7.2.1 (including)7.2.1 (including)
Qradar_security_information_and_event_managerIbm7.2.2 (including)7.2.2 (including)
Qradar_security_information_and_event_managerIbm7.2.3 (including)7.2.3 (including)
Qradar_security_information_and_event_managerIbm7.2.4 (including)7.2.4 (including)
Qradar_security_information_and_event_managerIbm7.2.5 (including)7.2.5 (including)
Qradar_security_information_and_event_managerIbm7.2.6 (including)7.2.6 (including)
Qradar_security_information_and_event_managerIbm7.2.7 (including)7.2.7 (including)
Qradar_security_information_and_event_managerIbm7.2.8 (including)7.2.8 (including)
Qradar_security_information_and_event_managerIbm7.2.8-p1 (including)7.2.8-p1 (including)
Qradar_security_information_and_event_managerIbm7.2.8-p2 (including)7.2.8-p2 (including)
Qradar_security_information_and_event_managerIbm7.2.8-p3 (including)7.2.8-p3 (including)
Qradar_security_information_and_event_managerIbm7.2.8-p4 (including)7.2.8-p4 (including)
Qradar_security_information_and_event_managerIbm7.2.8-p5 (including)7.2.8-p5 (including)
Qradar_security_information_and_event_managerIbm7.2.8-p6 (including)7.2.8-p6 (including)
Qradar_security_information_and_event_managerIbm7.3.0 (including)7.3.0 (including)
Qradar_security_information_and_event_managerIbm7.3.0-p1 (including)7.3.0-p1 (including)

References