IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.11.0 and IBM QRadar Suite for Software 1.10.12.0 through 1.10.19.0 does not set the SameSite attribute for sensitive cookies which could allow an attacker to obtain sensitive information using man-in-the-middle techniques. IBM X-Force ID: 233778.
Metrics
Affected Vendors & Products
References
History
Wed, 13 Aug 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ibm
Ibm cloud Pak For Security Ibm qradar Suite |
|
CPEs | cpe:2.3:a:ibm:cloud_pak_for_security:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_suite:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Ibm
Ibm cloud Pak For Security Ibm qradar Suite |

Status: PUBLISHED
Assigner: ibm
Published: 2024-05-01T12:48:12.167Z
Updated: 2024-08-03T10:54:03.704Z
Reserved: 2022-08-16T18:42:49.432Z
Link: CVE-2022-38386

Updated: 2024-08-03T10:54:03.704Z

Status : Analyzed
Published: 2024-05-01T13:15:47.960
Modified: 2025-08-13T13:10:35.387
Link: CVE-2022-38386

No data.