CVE Vulnerabilities

CVE-2023-47742

Improper Certificate Validation

Published: Mar 03, 2024 | Modified: Sep 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could disclose sensitive information using man in the middle techniques due to not correctly enforcing all aspects of certificate validation in some circumstances. IBM X-Force ID: 272533.

Weakness

The product does not validate, or incorrectly validates, a certificate.

Potential Mitigations

References