SB2023102428 - Server-Side Request Forgery (SSRF) in IBM QRadar Wincollect agent



SB2023102428 - Server-Side Request Forgery (SSRF) in IBM QRadar Wincollect agent

Published: October 24, 2023

Security Bulletin ID SB2023102428
Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Local access
Highest impact Denial of service

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Server-Side Request Forgery (SSRF) (CVE-ID: CVE-2022-43880)

The disclosed vulnerability allows a local privileged user to perform SSRF attacks.

The vulnerability exists due to insufficient validation of user-supplied input. A local privileged user can send a specially crafted HTTP request and trick the application to initiate requests to arbitrary systems.


Remediation

Install update from vendor's website.