cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-36771,https://securityvulnerability.io/vulnerability/CVE-2022-36771,Information Disclosure Vulnerability in IBM QRadar User Behavior Analytics,IBM QRadar User Behavior Analytics is susceptible to an information disclosure flaw that allows authenticated users to access sensitive information that should be restricted. This vulnerability could lead to unauthorized insights into user interactions and potentially compromise data privacy. It's crucial for organizations utilizing this feature to review their security policies and implement necessary patches to safeguard against potential exploitation.,IBM,Qradar User Behavior Analytics,4.3,MEDIUM,0.0005600000149570405,false,,false,false,false,,,false,false,,2022-09-28T16:15:00.000Z,0 CVE-2021-29757,https://securityvulnerability.io/vulnerability/CVE-2021-29757,Cross-Site Request Forgery Vulnerability in IBM QRadar User Behavior Analytics,"IBM QRadar User Behavior Analytics version 4.1.1 is susceptible to a Cross-Site Request Forgery attack, which can enable an attacker to execute unauthorized actions on behalf of a trusted user. This vulnerability arises from improper validation of requests, allowing the potential for malicious actions to be carried out without the knowledge of the user. Organizations utilizing this product should implement mitigation strategies to protect against unauthorized access and ensure that sensitive operations are secured.",IBM,Qradar User Behavior Analytics,4.3,MEDIUM,0.0010300000431016088,false,,false,false,false,,,false,false,,2021-08-02T16:15:00.000Z,0