Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Multiple vulnerabilities in IBM QRadar Risk Manager, SIEM and Incident Forensics may lead to Denial of Service, Exposure of sensitive information and Spoofing.
IMPACT: NORMAL
PUBLISH DATE: 04-Dec-2018
OVERVIEW
IBM QRadar Risk Manager, IBM QRadar SIEM, and IBM QRadar Incident Forensics are found to contain vulnerabilities which can be exploited by malicious people to conduct spoofing attacks, disclose sensitive information, and cause a DoS (Denial of Service).
ANALYSIS
While parsing XML entities, an error occurs which can be exploited to disclose otherwise restricted information. It may also induce a Denial of Service condition via a specially crafted XML document that includes external entity references.
A Man-in-the-Middle (MitM) attack can be launched by exploiting an error that occurs while handling certificates. This way, an attacker may proceed to conduct successful spoofing attacks.
The vulnerabilities are reported in versions 7.2.0 through 7.2.8 Patch 13.
AFFECTED PRODUCTS
UPDATES
Update affected versions to version 7.2.8 Patch 14.
If you think you’re the victim of a cyber-attack, immediately send an email to soc@rewterz.com.