CVE-2020-4294
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 6.3epss 1.2%
exploitation probability
1.2%top 32% of all CVEs
observed exploitation
nono source reports it
IBM QRadar 7.3.0 to 7.3.3 Patch 2 is vulnerable to Server Side Request Forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-ForceID: 176404.
CVSS:3.0/UI:N/AV:N/PR:L/AC:L/C:L/I:L/S:U/A:L/RC:C/E:U/RL:O
Affected products
IBM · Qradar