Description
IBM QRadar Advisor 1.0.0 through 2.6.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54219 | IBM QRadar Advisor 1.0.0 through 2.6.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. |
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7186424 |
|
History
Thu, 14 Aug 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm qradar Advisor
|
|
| CPEs | cpe:2.3:a:ibm:qradar_advisor:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm qradar Advisor
|
Tue, 18 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 18 Mar 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM QRadar Advisor 1.0.0 through 2.6.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. | |
| Title | IBM QRadar Advisor server-side request forgery | |
| First Time appeared |
Ibm
Ibm qradar Advisor With Watson |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:ibm:qradar_advisor_with_watson:1.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_advisor_with_watson:2.6.5:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm qradar Advisor With Watson |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-09-01T01:04:44.637Z
Reserved: 2024-10-20T13:40:37.122Z
Link: CVE-2024-49822
Updated: 2025-03-18T14:29:37.591Z
Status : Analyzed
Published: 2025-03-18T15:15:56.283
Modified: 2025-08-14T19:12:54.283
Link: CVE-2024-49822
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD