CVE-2014-4832: IBM Qradar Risk Manager
Medium severity, CVSS 4.3. EPSS: 1.1% chance of exploitation in the next 30 days.
IBM Security QRadar SIEM and QRadar Risk Manager 7.1 before MR2 Patch 9 and 7.2 before 7.2.4 Patch 1, and QRadar Vulnerability Manager 7.2 before 7.2.4 Patch 1, allow remote attackers to obtain sensitive cookie information by sniffing the network during an HTTP session.
Affected products
- IBM Qradar Risk Manager: version 7.1.0 only; version 7.2.0 only; version 7.2.1 only; version 7.2.2 only; version 7.2.3 only; version 7.2.4 only
- IBM Qradar Security Information And Event Manager: version 7.1.0 only; version 7.2.0 only; version 7.2.1 only; version 7.2.2 only; version 7.2.3 only; version 7.2.4 only
- IBM Qradar Vulnerability Manager: version 7.2.0 only; version 7.2.1 only; version 7.2.2 only; version 7.2.3 only; version 7.2.4 only
Published 2014-11-28. Last modified 2026-06-17.