Home
HIGH: 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
1.10.12.0 (semver)
affected
Default status
unaffected
1.10.0.0 (semver)
affected
Description
IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow a privileged execute code in case management script creation due to the improper generation of code.
Problem types
CWE-94 Improper Control of Generation of Code ('Code Injection')
Product status
1.10.12.0 (semver)
1.10.0.0 (semver)
Credits
John Zuccato, Rodney Ryan, Chris Shepherd, Vince Dragnea, Ben Goodspeed, Dawid Bak
References
www.ibm.com/support/pages/node/7235432