CVE-2021-29776: Medium severity IBM QRadar Security Information and Event Manager vulnerability
IBM QRadar SIEM 7.3, 7.4, and 7.5 could allow an authenticated user to obtain sensitive information from another user's dashboard providing the dashboard ID of that user. IBM X-Force ID: 203030.
Other sources
IBM QRadar SIEM could allow an authenticated user to obtain sensitive information from another user's dashboard providing the dashboard ID of that user.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-29776?
CVE-2021-29776 is a vulnerability that allows an authenticated user to obtain sensitive information from another user's dashboard in IBM QRadar SIEM.
How can an authenticated user exploit CVE-2021-29776?
An authenticated user can exploit CVE-2021-29776 by providing the dashboard ID of the targeted user.
What is the severity of CVE-2021-29776?
CVE-2021-29776 has a severity rating of 3.1 (low).
Is there a patch available for CVE-2021-29776?
Yes, IBM has released patches to address CVE-2021-29776. Please refer to the IBM QRadar SIEM product page for the appropriate patch.
Where can I find more information about CVE-2021-29776?
You can find more information about CVE-2021-29776 on the IBM X-Force Exchange and the IBM Support website.