Vulnerability Description
IBM QRadar Network Security 5.4 supports interaction between multiple actors and allows those actors to negotiate which algorithm should be used as a protection mechanism such as encryption or authentication, but it does not select the strongest algorithm that is available to both parties. IBM X-Force ID: 128689.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Qradar Network Security | 5.4 |
References
- http://www.ibm.com/support/docview.wss?uid=swg22007535Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/128689VDB Entry
- http://www.ibm.com/support/docview.wss?uid=swg22007535Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/128689VDB Entry
FAQ
What is CVE-2017-1491?
CVE-2017-1491 is a vulnerability with a CVSS score of 7.5 (HIGH). IBM QRadar Network Security 5.4 supports interaction between multiple actors and allows those actors to negotiate which algorithm should be used as a protection mechanism such as encryption or authent...
How severe is CVE-2017-1491?
CVE-2017-1491 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-1491?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Qradar Network Security.