{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3ohuaweiharmonyos4.0.0/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:o:huawei:emui:12.0.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:emui:14.0.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:harmonyos:2.0.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:harmonyos:2.1.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:harmonyos:3.0.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:harmonyos:3.1.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*","cpe:2.3:o:huawei:harmonyos:4.2.0:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.3,"id":"CVE-2024-42037"}],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["QRadar SIEM"],"_cs_severities":["medium"],"_cs_tags":["vulnerability","information-disclosure","ibm-qradar"],"_cs_type":"threat","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM has disclosed a security vulnerability identified as CVE-2024-42037 affecting IBM QRadar SIEM. The vulnerability permits a remote, authenticated attacker to access sensitive information that should otherwise be restricted. Successful exploitation of this flaw leads to unauthorized information disclosure, potentially exposing configuration details, logs, or system data. This issue highlights the importance of access control verification within the SIEM environment. As of the current advisory, there are no reports of widespread active exploitation, but the impact necessitates prompt patch management to prevent potential reconnaissance activities by authorized users who may attempt to exceed their privileges.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability allows an authenticated user to bypass intended access controls to retrieve restricted system data. Successful exploitation could compromise the confidentiality of security data managed by the SIEM, affecting organizations that rely on QRadar for sensitive log aggregation and incident response. The scope of impact is limited to organizations using vulnerable versions of IBM QRadar SIEM.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize patching of the affected IBM QRadar SIEM instances as specified by the vendor's security bulletin. Monitor access logs for unusual patterns of data retrieval or high volumes of unexpected queries originating from authenticated user accounts.\u003c/p\u003e\n","date_modified":"2026-09-02T12:02:49Z","date_published":"2026-09-02T12:02:49Z","id":"https://feed.craftedsignal.io/briefs/2026-09-ibm-qradar-disclosure/","summary":"A vulnerability in IBM QRadar SIEM allows a remote, authenticated attacker to gain unauthorized access to sensitive information.","title":"Information Disclosure Vulnerability in IBM QRadar SIEM","url":"https://feed.craftedsignal.io/briefs/2026-09-ibm-qradar-disclosure/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}