IBM Security Bulletin: IBM QRadar SIEM is vulnerable to various CGI vulnerabilities. (CVE-2016-5385, CVE-2016-5387, CVE-2016-5388)

Vulnerabilities affecting web servers that run code in a CGI or CGI-like context

CVE(s): CVE-2016-5387, CVE-2016-5388, CVE-2016-5385

Affected product(s) and affected version(s):

· IBM QRadar SIEM 7.2.n

· IBM QRadar Incident Forensics 7.2.n

· IBM QRadar SIEM 7.1.n

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2hcxus8
X-Force Database: http://ift.tt/2aO8XMj
X-Force Database: http://ift.tt/2dTp7zH
X-Force Database: http://ift.tt/2dv9pkb



from IBM Product Security Incident Response Team http://ift.tt/2hcxvwc