IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow an unauthenticated user in the environment to obtain highly sensitive information in configuration files.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/7235432 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
12 Aug 2025, 20:00
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.ibm.com/support/pages/node/7235432 - Vendor Advisory | |
CPE | cpe:2.3:a:ibm:qradar_suite:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:cloud_pak_for_security:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
First Time |
Ibm cloud Pak For Security
Ibm Ibm qradar Suite |
03 Jun 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-03 16:15
Updated : 2025-08-12 20:00
NVD link : CVE-2025-25022
Mitre link : CVE-2025-25022
JSON object : View
Products Affected
ibm
- cloud_pak_for_security
- qradar_suite
CWE
CWE-260
Password in Configuration File