AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-13477

MEDIUM · CVSS 4.7 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

IBM QRadar versions 7.6.0.0 to 7.6.0.1 and 7.5.0 through 7.5.0 UP 15 Interim Fix 005 are vulnerable to a command injection flaw that allows authenticated privileged users to execute arbitrary commands with normal user privileges due to inadequate input validation. This vulnerability could lead to unauthorized actions within the system, potentially compromising its integrity and security. Organizations using these versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-13477
Severity
MEDIUM
CVSS
4.7
EPSS
0.26%

Original NVD Description

IBM QRadar 7.6.0.0 through 7.6.0.1, and 7.5.0 through 7.5.0 UP 15 Interim Fix 005 could allow an authenticated privileged user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input.

Related CVEs

Other vulnerabilities affecting the same vendor(s)