Multiple cross-site request forgery (CSRF) vulnerabilities in IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 allow remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2016-11-30T18:00:00
Updated: 2024-08-05T23:40:13.671Z
Reserved: 2016-03-09T00:00:00
Link: CVE-2016-2878
Vulnrichment
No data.
NVD
Status : Modified
Published: 2016-11-30T18:59:06.753
Modified: 2024-11-21T02:48:59.690
Link: CVE-2016-2878
Redhat
No data.