Description
IBM QRadar WinCollect Agent 10.0.0 through 10.1.12 could allow a remote attacker to inject XML data into parameter values due to improper input validation of assumed immutable data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-45796 | IBM QRadar WinCollect Agent 10.0.0 through 10.1.12 could allow a remote attacker to inject XML data into parameter values due to improper input validation of assumed immutable data. |
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7176043 |
|
History
Thu, 14 Aug 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:qradar_wincollect:*:*:*:*:*:*:*:* |
Wed, 12 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 17 Jan 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM QRadar WinCollect Agent 10.0.0 through 10.1.12 could allow a remote attacker to inject XML data into parameter values due to improper input validation of assumed immutable data. | |
| Title | IBM QRadar WinCollect Agent data manipulation | |
| First Time appeared |
Ibm
Ibm qradar Wincollect |
|
| Weaknesses | CWE-471 | |
| CPEs | cpe:2.3:a:ibm:qradar_wincollect:10.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_wincollect:10.1.12:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm qradar Wincollect |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-02-12T20:31:24.004Z
Reserved: 2024-10-28T10:50:10.475Z
Link: CVE-2024-51462
Updated: 2025-02-12T20:27:04.332Z
Status : Analyzed
Published: 2025-01-17T03:15:07.527
Modified: 2025-08-14T01:18:35.720
Link: CVE-2024-51462
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD