CVE-2023-26277: IBM Qradar Wincollect

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM QRadar WinCollect Agent 10.0 though 10.1.3 could allow a local user to execute commands on the system due to execution with unnecessary privileges. IBM X-Force ID: 248156.

Affected products

  • IBM Qradar Wincollect: from 10.0, up to and including 10.1.3

Published 2023-05-31. Last modified 2026-06-17.