Description
The WinCollect agent in IBM Security QRadar SIEM before 7.1.1.569824 allows remote attackers to bypass intended access restrictions by injecting a (1) DLL or (2) configuration file.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21656875
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/88361
Scores
EPSS
0.0110
EPSS Percentile
62.3%
Details
CWE
CWE-264
Status
published
Products (3)
ibm/qradar_security_information_and_event_manager
7.0.0
ibm/qradar_security_information_and_event_manager
7.0.1
ibm/qradar_security_information_and_event_manager
< 7.1.0
Published
Nov 29, 2013
Tracked Since
Feb 18, 2026