CVE-2015-2009: IBM Qradar Security Information And Event Manager
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in the xmlrpc.cgi service in IBM QRadar SIEM 7.1 before MR2 Patch 11 Interim Fix 02 and 7.2.x before 7.2.5 Patch 4 allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences via vectors related to webmin. IBM X-Force ID: 103921.
Affected products
- IBM Qradar Security Information And Event Manager: from 7.2.0, before 7.2.5 (fixed in 7.2.5); version 7.1.0 only; version 7.2.5 only
Published 2018-03-29. Last modified 2026-06-17.