CVE detail
CVE-2019-4264 — CVE-2019-4264
Published 2019-05-29 · Modified 2026-06-17 · Vendor ibm · Product qradar_security_information_and_event_manager · Source nvd
MEDIUM
severity
CVSS-derived band
0.0101
EPSS probability
exploitation probability, 30d
60.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
IBM QRadar SIEM 7.2.8 WinCollect could allow an attacker to obtain sensitive information by spoofing a trusted entity using man in the middle techniques due to not validating or incorrectly validating a certificate. IBM X-Force ID: 160072.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References